Update Gitleaks รุ่นใหม่ (v8+) ไม่รองรับ TOML format แบบเก่า
This commit is contained in:
parent
2a01065aca
commit
f525586df7
@ -1,17 +1,20 @@
|
|||||||
[[rules]]
|
[[rules]]
|
||||||
|
id = "jdbc-credentials"
|
||||||
description = "JDBC connection string with credentials"
|
description = "JDBC connection string with credentials"
|
||||||
regex = '''jdbc:[^"]*user=.*&password=.*|jdbc:[^"']*:[^"']*@[^"']*'''
|
regex = '''jdbc:[^"]*user=.*&password=.*|jdbc:[^"']*:[^"']*@[^"']*'''
|
||||||
tags = ["credentials","db","jdbc"]
|
tags = ["credentials","db","jdbc"]
|
||||||
severity = "high"
|
severity = "high"
|
||||||
|
|
||||||
[[rules]]
|
[[rules]]
|
||||||
|
id = "db-password-assignment"
|
||||||
description = "Generic DB password assignment"
|
description = "Generic DB password assignment"
|
||||||
regex = '''(?i)(db|database|jdbc|connection).*(password|passwd)\s*[:=]\s*['"][^'"]+['"]'''
|
regex = '''(?i)(db|database|jdbc|connection).*(password|passwd)\s*[:=]\s*['"][^'"]+['"]'''
|
||||||
tags = ["credentials"]
|
tags = ["credentials"]
|
||||||
severity = "high"
|
severity = "high"
|
||||||
|
|
||||||
[[rules]]
|
[[rules]]
|
||||||
|
id = "hardcoded-password"
|
||||||
description = "Hardcoded Password"
|
description = "Hardcoded Password"
|
||||||
regex = '''(?i)(password|passwd|pwd)\s*[:=]\s*['"][^'"]+['"]'''
|
regex = '''(?i)(password|passwd|pwd)\s*[:=]\s*['"][^'"]+['"]'''
|
||||||
tags = ["password", "security"]
|
tags = ["password", "security"]
|
||||||
severity = "high"
|
severity = "high"
|
||||||
|
|||||||
Loading…
Reference in New Issue
Block a user