kingfisher/crates/kingfisher-rules/data/rules/plivo.yml
2026-04-03 23:43:49 -07:00

70 lines
1.6 KiB
YAML

rules:
- name: Plivo Auth ID
id: kingfisher.plivo.1
pattern: |
(?xi)
\b
plivo
(?:.|[\n\r]){0,32}?
\b(?:auth[_-]?id|account[_-]?sid)\b
(?:.|[\n\r]){0,16}?
[=:"'\s]
\b
(
MA[a-z0-9]{18}
)
\b
pattern_requirements:
min_digits: 2
min_entropy: 2.8
confidence: low
visible: false
examples:
- "PLIVO_AUTH_ID = 'MABDY4DMVMZESYNGY0NV'"
- "plivo_auth_id = 'MA9kl2nmpxwbuvqr73fh'"
references:
- https://www.plivo.com/docs/
- name: Plivo Auth Token
id: kingfisher.plivo.2
pattern: |
(?xi)
\b
plivo
(?:.|[\n\r]){0,64}?
\b(?:auth[_-]?token|token)\b
(?:.|[\n\r]){0,16}?
[=:"'\s]
\b
(
[A-Za-z0-9+/]{38,42}[=]{0,2}
)
\b
pattern_requirements:
min_digits: 2
min_uppercase: 2
min_lowercase: 4
min_entropy: 3.5
confidence: medium
examples:
- "plivo\nauth_token = 'QCNiY2U3YzliY2E2OGNhZDNjYjRkMGI5NDQ1MWB5'"
- "plivo\ntoken: 'KFBiY2E2OGNhZDNjYjRkMGI5NDQ1MWh3cqZVXy'"
references:
- https://www.plivo.com/docs/
- https://support.plivo.com/hc/en-us/articles/360041731231
validation:
type: Http
content:
request:
method: GET
url: https://api.plivo.com/v1/Account/
headers:
Authorization: "Basic {{ TOKEN }}"
Accept: application/json
response_matcher:
- report_response: true
- type: StatusMatch
status: [200]
- type: StatusMatch
status: [401, 403]
negative: true