فهرست منبع

Adjust AWS secret key rule

Dirk Pahl 4 سال پیش
والد
کامیت
9f8ca91b8b

+ 1 - 1
config/gitleaks.toml

@@ -8,7 +8,7 @@ title = "gitleaks config"
 
 [[rules]]
     description = "AWS Secret Key"
-    regex = '''(?i)aws(.{0,20})?=.[\'\"0-9a-zA-Z\/+]{40}'''
+    regex = '''(?i)aws_(.{0,20})?=?.[\'\"0-9a-zA-Z\/+]{40}'''
     tags = ["key", "AWS"]
 
 [[rules]]

+ 1 - 1
testdata/expect/basic/results.json

@@ -36,7 +36,7 @@
  {
   "line": "aws_secret_access_key = 'wJalrXUtnFEMI/K7MDENG/bPxRfiCYEXAMPLEKEY'",
   "lineNumber": 10,
-  "offender": "aws_secret_access_key = 'wJalrXUtnFEMI/K7MDENG/bPxRfiCYEXAMPLEKE",
+  "offender": "aws_secret_access_key = 'wJalrXUtnFEMI/K7MDENG/bPxRfiCYEXAMPLEKEY",
   "offenderEntropy": -1,
   "commit": "e7c0aff3e8a60b50a85432fdf933f8beff013743",
   "repo": "basic",

+ 1 - 1
testdata/expect/basic/results_files_at_208ae46.json

@@ -19,7 +19,7 @@
  {
   "line": "aws_secret_access_key = 'wJalrXUtnFEMI/K7MDENG/bPxRfiCYEXAMPLEKEY'",
   "lineNumber": 10,
-  "offender": "aws_secret_access_key = 'wJalrXUtnFEMI/K7MDENG/bPxRfiCYEXAMPLEKE",
+  "offender": "aws_secret_access_key = 'wJalrXUtnFEMI/K7MDENG/bPxRfiCYEXAMPLEKEY",
   "offenderEntropy": -1,
   "commit": "208ae4669ade2563fcaf9f12922fa2c0a5b37c63",
   "repo": "basic",

+ 1 - 1
testdata/expect/basic/results_no_git.json

@@ -19,7 +19,7 @@
  {
   "line": "aws_secret_access_key = 'wJalrXUtnFEMI/K7MDENG/bPxRfiCYEXAMPLEKEY'",
   "lineNumber": 10,
-  "offender": "aws_secret_access_key = 'wJalrXUtnFEMI/K7MDENG/bPxRfiCYEXAMPLEKE",
+  "offender": "aws_secret_access_key = 'wJalrXUtnFEMI/K7MDENG/bPxRfiCYEXAMPLEKEY",
   "offenderEntropy": -1,
   "commit": "",
   "repo": "",