github Checkmarx/kics v2.1.18

16 hours ago

What's Changed

  • feat(query): implements "Beta - Activity Log Alert For Create Policy Assignment Not Configured" by @cx-andre-pereira in #7805
  • feat(query): implements "Beta - Activity Log Alert For Delete Policy Assignment Not Configured" by @cx-andre-pereira in #7806
  • feat(query): implemented 'ensure critical contacts is configured for organization' query for terraform/gcp by @cx-ricardo-jesus in #7841
  • perf(engine): optimize Terraform parser with directory caching and LOC-based memory calculation by @cx-artur-ribeiro in #7864
  • feat(query): implements "Beta - Activity Log Alert For Create Or Update Network Security Group Not Configured" by @cx-andre-pereira in #7808
  • feat(query): implements "Beta - Activity Log Alert For Delete Network Security Group Not Configured" by @cx-andre-pereira in #7810
  • feat(query): implements "Beta - Activity Log Alert For Create or Update Security Solution Not Configured" by @cx-andre-pereira in #7811
  • feat(query): implements "Beta - Activity Log Alert For Delete Security Solution Not Configured" by @cx-andre-pereira in #7812
  • feat(query): implements "Beta - Activity Log Alert For Create or Update SQL Server Firewall Rule Not Configured" by @cx-andre-pereira in #7813
  • feat(query): implements "Beta - Activity Log Alert For Delete SQL Server Firewall Rule Not Configured" by @cx-andre-pereira in #7814
  • feat(query): implements "Beta - Activity Log Alert For Create or Update Public IP Address Rule Not Configured" by @cx-andre-pereira in #7819
  • chore(ci): add CES CI workflows by @cx-rafael-carvalho in #7869
  • feat(query): implements "Beta - Activity Log Alert For Delete Public IP Address Rule Not Configured" by @cx-andre-pereira in #7815
  • feat(query): implements "Beta - File Share Without Soft Delete" by @cx-andre-pereira in #7827
  • feat(query): implements "Beta - Storage Account Not Using Latest SMB Protocol Version" by @cx-andre-pereira in #7828
  • feat(query): implements "Beta - Storage Account Using Unsafe SMB Channel Encryption" by @cx-andre-pereira in #7830
  • feat(query): implements "Beta - Blob Storage Without Soft Delete" by @cx-andre-pereira in #7831
  • feat(query): implements "Beta - Storage Account With Shared Access Key" by @cx-andre-pereira in #7832
  • feat(query): implements "Beta - Containers Without Soft Delete" by @cx-andre-pereira in #7834
  • feat(query): implements "Beta - Storage Account With Cross Tenant Replication Enabled" by @cx-andre-pereira in #7835
  • feat(query): implements "Beta - Storage Account Without Delete Lock" by @cx-andre-pereira in #7836
  • feat(query): implements "Beta - Activity Log Alert For Service Health Not Configured" by @cx-andre-pereira in #7821
  • feat(query): implements "Beta - Service Without Resource Logging" by @cx-andre-pereira in #7837
  • feat(query): new query "Beta - Databricks Workspace Without CMK" - Terraform/azure by @cx-andre-pereira in #7770
  • feat(query): implements "Beta - Logs And Alerts Missing Project Ownership Assignment And Changes" by @cx-andre-pereira in #7804
  • feat(query): implements "Beta - Logs And Alerts Missing Audit Configuration Changes" by @cx-andre-pereira in #7801
  • feat(query): implements "Beta - Logs And Alerts Missing Custom Role Changes" - Terraform/gcp by @cx-andre-pereira in #7772
  • feat(query): implements "Beta - Resource Without Diagnostic Settings" by @cx-andre-pereira in #7793
  • feat(query): implements "Beta - Diagnostic Settings Without Appropriate Logging" by @cx-andre-pereira in #7794
  • feat(query): implements "Beta - Databricks Diagnostic Logging Unconfigured" - Terraform/azure by @cx-andre-pereira in #7769
  • feat(query): implements "Beta - Cloud Asset Inventory Disabled" - Terraform/gcp by @cx-andre-pereira in #7775
  • feat(query): implemented query to cover "Ensure Legacy Networks Do Not Exist For Older Project" for terraform/gcp by @cx-ricardo-jesus in #7822
  • feat(query): implements "Beta - Backup Vault Without Soft Delete" by @cx-andre-pereira in #7845
  • feat(query): implements "Beta - Backup Vault Without Immutability" by @cx-andre-pereira in #7848
  • feat(query): implements "Beta - Recovery Services Vault Without Soft Delete" by @cx-andre-pereira in #7849
  • feat(query): implemented query that checks if the use of user access administrator is not restricted for terraform/azure by @cx-ricardo-jesus in #7842
  • fix(action): bump grype anchore action by @cx-miguel-silva in #7909
  • feat(query): implements "Beta - Recovery Services Vault Without Immutability" by @cx-andre-pereira in #7850
  • feat(query): implements "Beta - Recovery Services Vault With Public Network Access" by @cx-andre-pereira in #7851
  • feat(query): implemented query Beta - Key Vault Purge Protection Is Enabled for terraform/azure and fixed remediation problems by @cx-ricardo-jesus in #7838
  • feat(query): implements "Beta - VM Without Managed Disk" by @cx-andre-pereira in #7856
  • feat(query): implements "Beta - SQL Database Without Data Encryption" by @cx-andre-pereira in #7858
  • docs(queries): update queries catalog by @kicsbot in #7894
  • docs(kicsbot): preparing for release 2.1.18 by @kicsbot in #7914

New Contributors

Full Changelog: v2.1.17...v2.1.18

Don't miss a new kics release

NewReleases is sending notifications on new releases.