diff --git a/exposures/configs/docker-compose-config.yml b/exposures/configs/docker-compose-config.yml new file mode 100644 index 0000000000..fbf5ebea3e --- /dev/null +++ b/exposures/configs/docker-compose-config.yml @@ -0,0 +1,22 @@ +id: docker-compose-config + +info: + name: docker-compose.yml exposure + author: meme-lord & blckraven + severity: medium + +requests: + - method: GET + redirects: true + max-redirects: 3 + path: + - "{{BaseURL}}/docker-compose.yml" + matchers-condition: and + matchers: + - type: dsl + dsl: + - 'regex("^version: ", body) && contains(body, "services:") == true' + + - type: status + status: + - 200