STACS v0.4.7 was just released, and it's one of the biggest yet:
New "pretty" output for quicker review, additional archive formats (xar, ar, cpio, cab, rar), and binary wheels to simplify installation on macOS and Linux!
Let us know what you think!
github.com/stacscan/stacs…
The rule-set changes can be found in the following PR.
github.com/stacscan/stacs…
However, if you're using the STACS container you can start using these rules by pulling the latest image:
docker pull stacscan/stacs:latest
or, pinned:
docker pull stacscan/stacs:0.4.6-r78938f3
Static SSH keys in their various forms are often overlooked when shipping devices or software.
To help detect this in your builds, the latest STACS rules and container images now supports detection of PuTTY PPK, RSA1, and OpenSSH format private keys.
tools.cisco.com/security/cente…
STACS v0.4.6 was just released with a number of new convenience features and some _significant_ performance improvements!🚀
Check it out and let us know what you think.
github.com/stacscan/stacs…
A minor milestone today as we've passed 1,000 STACS container pulls on Docker Hub 🎉
To mark the occasion we've added rules for detecting PyPI, NPM, and Slack tokens.
We've also added support for PKCS#12 / PFX files, and DER encoded RSA private keys!
github.com/stacscan/stacs…