Java Rule for PBEKeySpec where iterations less than 1000
Opened this issue · 0 comments
ericwb commented
Is your feature request related to a problem? Please describe.
PBEKeySpec - use at least 1000 iterations to generate secure random keys
Describe the solution you'd like
Detect case where Java crypto class PBEKeySpec is used with iterations less than 1000.
Describe alternatives you've considered
n/a
Additional context
Love this idea? Give it a 👍. We prioritize fulfilling features with the most 👍.