feat: add kubernetes.io/dockerc(onfigjson|fg) secrets (#8718)
Signed-off-by: Dwi Siswanto <me@dw1.io>patch-1
parent
bc66457262
commit
5362807992
|
@ -0,0 +1,22 @@
|
||||||
|
id: kubernetes-dockercfg-secret
|
||||||
|
|
||||||
|
info:
|
||||||
|
name: kubernetes.io/dockercfg Secret
|
||||||
|
author: dwisiswant0
|
||||||
|
severity: info
|
||||||
|
reference:
|
||||||
|
- https://blog.aquasec.com/the-ticking-supply-chain-attack-bomb-of-exposed-kubernetes-secrets
|
||||||
|
metadata:
|
||||||
|
verified: true
|
||||||
|
tags: kubernetes,k8s,file,keys,secret
|
||||||
|
|
||||||
|
file:
|
||||||
|
- extensions:
|
||||||
|
- yaml
|
||||||
|
- yml
|
||||||
|
|
||||||
|
extractors:
|
||||||
|
- type: regex
|
||||||
|
part: body
|
||||||
|
regex:
|
||||||
|
- \.dockercfg:\s+["']?e(w|y)[\w=]+["']?
|
|
@ -0,0 +1,22 @@
|
||||||
|
id: kubernetes-dockerconfigjson-secret
|
||||||
|
|
||||||
|
info:
|
||||||
|
name: kubernetes.io/dockerconfigjson Secret
|
||||||
|
author: dwisiswant0
|
||||||
|
severity: info
|
||||||
|
reference:
|
||||||
|
- https://blog.aquasec.com/the-ticking-supply-chain-attack-bomb-of-exposed-kubernetes-secrets
|
||||||
|
metadata:
|
||||||
|
verified: true
|
||||||
|
tags: kubernetes,k8s,file,keys,secret
|
||||||
|
|
||||||
|
file:
|
||||||
|
- extensions:
|
||||||
|
- yaml
|
||||||
|
- yml
|
||||||
|
|
||||||
|
extractors:
|
||||||
|
- type: regex
|
||||||
|
part: body
|
||||||
|
regex:
|
||||||
|
- \.dockerconfigjson:\s+["']?e(w|y)[\w=]+["']?
|
Loading…
Reference in New Issue