From 68f0bce619cb5766b83fe74a20d8e808ad7a0a64 Mon Sep 17 00:00:00 2001 From: gh0stkey <24655118+gh0stkey@users.noreply.github.com> Date: Mon, 12 Aug 2024 10:41:24 +0800 Subject: [PATCH] Version: 3.3.1 Update --- src/main/resources/rules/Rules.yml | 13 +++++++++++-- 1 file changed, 11 insertions(+), 2 deletions(-) diff --git a/src/main/resources/rules/Rules.yml b/src/main/resources/rules/Rules.yml index 9bb9ce1..e6a35ee 100644 --- a/src/main/resources/rules/Rules.yml +++ b/src/main/resources/rules/Rules.yml @@ -209,7 +209,7 @@ rules: sensitive: false - name: Sensitive Field loaded: true - f_regex: ((\[)?('|")?([\w]{0,10})((key)|(secret)|(token)|(config)|(auth)|(access)|(admin))([\w]{0,10})('|")?(\])?( + f_regex: ((\[)?('|")?([\w]{0,10})((key)|(secret)|(token)|(config)|(auth)|(access)|(admin)|(ticket))([\w]{0,10})('|")?(\])?( |)(:|=)( |)('|")(.*?)('|")(|,)) s_regex: '' format: '{0}' @@ -248,7 +248,7 @@ rules: sensitive: false - name: Create Script loaded: true - f_regex: (\+\{.*?\}\[[a-zA-Z]\]\+".*?\.js") + f_regex: (\{[^{}]*\}\s*\[[^\s]*\]\s*\+\s*"[^\s]*\.js") s_regex: '"?([\w].*?)"?:"(.*?)"' format: '{0}.{1}' color: green @@ -282,3 +282,12 @@ rules: scope: response body engine: nfa sensitive: true + - name: Request URI + loaded: true + f_regex: ' ((?!.*\.js(\?.*)?$)(.*?[^.js$])) ' + s_regex: '' + format: '{0}' + color: gray + scope: request line + engine: nfa + sensitive: false