github praetorian-inc/noseyparker v0.24.0
Nosey Parker v0.24.0

4 months ago

Docker Images

A prebuilt multiplatform Docker image for this release is available for x86_64 and ARM64 architectures:

docker pull ghcr.io/praetorian-inc/noseyparker:v0.24.0

A prebuilt Alpine-based image is also available for x86_64 and ARM64 architectures:

docker pull ghcr.io/praetorian-inc/noseyparker-alpine:v0.24.0

Additions

  • New rules:

    • Auth0 Application Credentials (#254)
    • Credentials in Connect-VIServer Invocation (#251)
    • Hashicorp Vault Batch Token (< v1.10) (#259)
    • Hashicorp Vault Recovery Token (< v1.10) (#259)
    • Hashicorp Vault Service Token (< v1.10) (#259)
    • Hashicorp Vault Batch Token (>= v1.10) (#259)
    • Hashicorp Vault Recovery Token (>= v1.10) (#259)
    • Hashicorp Vault Service Token (>= v1.10) (#259)
    • Hashicorp Vault Unseal Key (#259)
    • Kagi API Key (#255)
    • Postmark API Token (#260)
    • Sourcegraph Access Token (#252)
    • Tavily API Key (#253)
  • SARIF output now again includes Git commit information when available (#266 from @PBarri)

Changes

  • The Credentials in PsExec rule has been renamed to Credentials in PsExec Invocation (#251)

  • Rules have been refined to improve signal-to-noise:

    • Azure Connection String (#257)
    • Generic Username and Password (#260)
    • Slack Bot Token (#268)
  • CI jobs that run on Ubuntu 20.04 have been replaced with Ubuntu 22.04, now that Ubuntu 20.04 runners have been removed from GitHub Actions (#267)

Don't miss a new noseyparker release

NewReleases is sending notifications on new releases.