Yandex Access Token

Description

The source code repository contains sensitive information: Yandex Access Token

Weakness:

009 - Sensitive information in source code

Category: Information Collection

Detection Strategy

    Matches Yandex Access Token patterns in source code and configuration files

Vulnerable code example

YANDEX_OAUTH_TOKEN=oNKE6BzKsFuO8qvuau.kqvuAuEkFUS5hoEo.rpoD0siIHlzm305uKw6kFDbzT8p8KSHZGs5iVQ0TPDin4Xt
yandex_access_token: aAbBcCdDeEfFgGhHiIjJkKlLmMnNoOpPqQrRsStTuUvVwWxXyYzZ0123456789aAbBcCdDeEfFgGhHiIjJk