diff --git a/file/keys/pendo-api-key-exposure.yaml b/file/keys/pendo-api-key-exposure.yaml new file mode 100644 index 00000000000..ac52cb2183f --- /dev/null +++ b/file/keys/pendo-api-key-exposure.yaml @@ -0,0 +1,23 @@ +id: pendo-api-key-exposure + +info: + name: Pendo API Key Exposure + author: 0x_Akoko + severity: medium + description: | + Detected exposure of Pendo API keys within files or API responses. + reference: + - https://support.pendo.io/hc/en-us/articles/9491198203547-Pendo-Integration-Key + metadata: + verified: true + tags: file,keys,token,pendo + +file: + - extensions: + - all + + extractors: + - type: regex + group: 1 + regex: + - 'pendoApiKey.*?([a-f0-9]{8}-[a-f0-9]{4}-[a-f0-9]{4}-[a-f0-9]{4}-[a-f0-9]{12})'