Add dashes to SHA algorithm names in Encryption.qll

This commit is contained in:
Ed Minnix
2023-08-09 13:51:10 -04:00
parent b8372c2f95
commit 7cfe78a52d

View File

@@ -270,7 +270,7 @@ string getInsecureAlgorithmRegex() {
string getASecureAlgorithmName() {
result =
[
"RSA", "SHA256", "SHA512", "CCM", "GCM", "AES(?![^a-zA-Z](ECB|CBC/PKCS[57]Padding))",
"RSA", "SHA-?256", "SHA-?512", "CCM", "GCM", "AES(?![^a-zA-Z](ECB|CBC/PKCS[57]Padding))",
"Blowfish", "ECIES"
]
}