FireStorePwn - Firestore Database Vulnerability Scanner Using APKs


fsp scans an APK and checks the Firestore database for rules that are not secure, testing with or without authentication.

If there are problems with the security rules, attackers could steal, modify or delete data and raise the bill.

Install fsp
sudo wget https://raw.githubusercontent.com/takito1812/FireStorePwn/main/fsp -O /bin/fsp
sudo chmod +x /bin/fsp

Running fsp

Scanning an APK without authentication
fsp app.apk

Scanning an APK with authentication

With email and password.

fsp app.apk [email protected]:123456

With a token.

fsp app.apk eyJhbGciO...


FireStorePwn - Firestore Database Vulnerability Scanner Using APKs FireStorePwn - Firestore Database Vulnerability Scanner Using APKs Reviewed by Zion3R on 8:30 AM Rating: 5