8 Commits

Author SHA1 Message Date
Pierre-Loup
e769e586c9
Update security rules: add OWASP Mobile Top 10 2024 security standard (APPSEC-2383) (#4660) 2025-02-19 17:19:00 +01:00
Egon Okerman
8630818ded
Modify rule S2053: Update salt length to be 32 bytes everywhere (#4094)
* Update salt length to be 32 bytes everywhere

* Fix typo in VB.NET

* Add Java
2024-08-08 14:32:01 +02:00
gaetan-ferry-sonarsource
7ca7930228
Modify rule S2053: Add an exception section for key derivation use case of KDFs (#3700)
* Adding an exception section covering key derivation use cases.

* Updating recommended salt length to 256 bits as recommended by NIST

* Improve title to make it explicit we don't target KDF

* Altered some small points

---------

Co-authored-by: Egon Okerman <egon.okerman@sonarsource.com>
2024-03-07 18:20:49 +01:00
hendrik-buchwald-sonarsource
a2e277ab30
Modify rule S2053: LaYC format (#2335) 2023-07-06 10:32:19 +02:00
Fred Tingaud
51369b610e
Make sure that includes are always surrounded by empty lines (#2270)
When an include is not surrounded by empty lines, its content is inlined
on the same line as the adjacent content. That can lead to broken tags
and other display issues.
This PR fixes all such includes and introduces a validation step that
forbids introducing the same problem again.
2023-06-22 10:38:01 +02:00
Victor
fe961619f9 migrate rule descriptions to new education format 2023-05-05 16:29:04 +02:00
Fred Tingaud
b4161466e6
RULEAPI-661: Add syntax coloring 2022-02-04 16:28:24 +00:00
Johann Beleites
78a78b6623
Update rule S2053: Hashes should include an unpredictable salt (#382) 2021-09-24 08:44:57 +00:00