Linkedin Oauth2 Secret Key
Description
The source code repository contains sensitive information: LinkedIn OAuth2 Secret Key
Detection Strategy
• Matches LinkedIn OAuth2 Secret Key patterns in source code and configuration files
Vulnerable code example
LINKEDIN_CLIENT_SECRET=AbCdEfGh1234IjKl
LINKEDIN_CLIENT_SECRET=aB3xY7zQ9mK_2pL5nR8s=TuVwXyZq9K
linkedin_client_secret: "aB3xY7zQ9mK_2pL5nR8s=TuVwXyZq9K"
linkedin-client-secret=aB3xY7zQ9mK_2pL5nR8s=TuVwXyZq9K
{"linkedinClientSecret": "aB3xY7zQ9mK_2pL5nR8s=TuVwXyZq9K"}
# LinkedIn app credentials -- client_secret=aB3xY7zQ9mK_2pL5nR8s=TuVwXyZq9K
LINKEDIN_CLIENT_SECRET=Kq7wZ2nX4vKq7wZ2
LINKEDIN_CLIENT_SECRET=aB3xY7zQ9maB3xY7zQ9maB3xY7zQ9maB3xY7zQ9maB3xY7zQ9maB3xY7zQ9maB3xY7zQ9maB3xY7zQ9maB3xY7zQ9maB3xY7zQ9mFree trial
Search for vulnerabilities in your apps for free with Fluid Attacks' automated security testing! Start your 21-day free trial and discover the benefits of the Continuous Hacking Essential plan. If you prefer the Advanced plan, which includes the expertise of Fluid Attacks' hacking team, fill out this contact form.