kingfisher/crates/kingfisher-rules/data/rules/mssql.yml
2026-04-03 23:43:49 -07:00

26 lines
655 B
YAML

rules:
- name: MSSQL Credentials
id: kingfisher.mssql.1
pattern: |
(?xi)
\b
(?:mssql|sqlserver)[_-]?(?:password|passwd|pass|pwd)
(?:.|[\n\r]){0,16}?
[=:"'\s]
['"]*
(
[^\s"']{6,128}
)
['"\s]
pattern_requirements:
min_digits: 1
min_entropy: 2.8
confidence: medium
examples:
- "mssql_password=n53qmpa3xe\n"
- "mssql_password=myS3cur3Passw0rd\n"
- "mssql_password=Tr0ub4dor&3\n"
references:
- https://docs.microsoft.com/en-us/sql/
# No public validation endpoint: MSSQL is self-hosted;
# the host and port are instance-specific.