improve detection of cipherbcryptors #519
Merged
Chainguard Enforce / Enforce - Commit Signing
succeeded
Oct 17, 2024 in 0s
Successfully verified commit signature.
CLAIM | DESCRIPTION | |
---|---|---|
✅ | Found Git signature | |
✅ | Validated Git signature | |
✅ | Validated Rekor entry | |
✅ | Allowed by policy |
Details
Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 352445195651364410645157617338778503838429381004 (0x3dbc306d281612677471931cfdc7cff92084818c)
Signature Algorithm: ECDSA-SHA384
Issuer: O=sigstore.dev,CN=sigstore-intermediate
Validity
Not Before: Oct 17 16:06:46 2024 UTC
Not After : Oct 17 16:16:46 2024 UTC
Subject: Subject Public Key Info:
Public Key Algorithm: ECDSA
Public-Key: (256 bit)
X:
23:69:8b:95:a5:64:41:8f:88:c2:1a:e0:03:b5:86:
de:21:51:b5:e0:eb:5f:58:a8:d7:d0:e7:e5:2e:e0:
e4:d4
Y:
d6:a8:b0:da:f4:88:ec:aa:d1:81:3e:5d:ca:9f:a6:
29:5b:de:ff:59:8f:93:9f:07:ec:b3:8b:3f:b6:d8:
89:48
Curve: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
Code Signing
X509v3 Subject Key Identifier:
12:3F:9A:92:0F:C0:FF:5C:4E:D1:F1:10:21:05:85:CF:B9:D4:D5:18
X509v3 Authority Key Identifier:
keyid:DF:D3:E9:CF:56:24:11:96:F9:A8:D8:E9:28:55:A2:C6:2E:18:64:3F
X509v3 Subject Alternative Name: critical
email:[email protected]
oidcIssuer:
https://accounts.google.com
Unknown extension 1.3.6.1.4.1.57264.1.8
Signed Certificate Timestamp:
BHoAeAB2AN09MGrGxxEyYxkeHJlnNwKiSl643jyt/4eKcoAvKe6OAAABkps7RloAAAQDAEcwRQIgaq9CpdCCTiRQBm48gNqpydpQEgn6UGHsPolLFOITF1wCIQCMGQ/+U7cJDSkAmRIzy2qB4ZMtE0gRCpIycKh2RKm9dg==
Signature Algorithm: ECDSA-SHA384
30:64:02:30:5f:99:82:d1:e9:5a:72:cd:34:c4:b8:57:c7:5d:
44:4c:8e:6f:6b:e1:fe:93:9d:07:f5:98:f2:43:b9:ae:d2:5c:
7a:91:18:78:71:eb:d5:6e:28:0c:8b:ad:eb:10:fd:06:02:30:
50:eb:08:56:53:f2:31:a9:13:f4:36:d5:d4:f0:a4:81:2a:51:
4f:a7:59:97:8a:87:80:ba:f6:1a:8e:d4:25:94:c2:69:19:70:
b2:aa:5d:68:64:fe:07:b9:4c:5c:65:36
Rekor Entry
{
"body": "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",
"integratedTime": 1729181206,
"logID": "c0d23d6ad406973f9559f3ba2d1ca01f84147d8ffc5b8445c224f98b9591801d",
"logIndex": 141041315,
"verification": {
"inclusionProof": {
"checkpoint": "rekor.sigstore.dev - 1193050959916656506\n19154439\ncfdwLxz1u+i/6BA3g0K75ZCE7D0GQwCOCoA3JklMc/E=\n\n— rekor.sigstore.dev wNI9ajBGAiEAtBhig3XHQDgVKfLkbTR33Y55xmolxstaJICjTgPf/kECIQCA/2aR8gp9YIbK3ckr9ZfX0FfnZI9hZHQ+qJPFgMxm1A==\n",
"hashes": [
"4f8b05197ae19ca80d87539069d55b96de09bc76b71390b66d1aa34ce1ea0a49",
"66e3c4d6d1de83f0fa747bcdf0b245de7a67ae5582120aa0a590356df293f101",
"f0b765d382c470e8ac1a20b4ad070ffc083b8da6ff76fba7be97464ab37fccdb",
"ed3255d35742d820b3381979bf651aab02aad9c34d1011be1b04356f2bb669a4",
"0aad2a19767b0136146c5f099c4823dea3fa3786dfcfc0180a5c8dc5893c54cc",
"4c21a5685565f4025077a7560629f3c0136408d0195f4e2abb4b8aaf8428e113",
"994d42902ead23d49ecfb17de36b017919e0e636dcd867d4377c3658b3315d12",
"d4ea53f93df2f21e1f2d238f2a9538414d019e4885e75bbfdd02568c0bc46b95",
"bf97cd2de652d2626f2c8765333b3b20b8efe6435983815a4046a93a0ba5aa66",
"8cf5b4768b40618e601cf8a0662f7b3ee6307566194ebbbca938408e5593adbb",
"08529d4920a183a9867f64e1a39234ad7a92268a0a67c7100c89b4517cc5a58b",
"fc6435eede9eda3544363882e4da937dca415f738e882df98c84dc9825c15e45",
"394912dcb563a4c5ce10838e77c164594ad81d93efef88bef4cffdc8b6ad98df",
"f3f8a769db32105d59a63cb4604f8f5a6cae248e94217d5c1f0af33aeb6bc8eb",
"1415c545f2c5c9a43f721597b88d8d29b27be95657afee3c07573768154ee8a8",
"af58890491a01a2473ee8d3aa12b739ad80d4f0b95b83800ec8ad1c83117e227",
"d7063c20548671f7298ff7fad42be1d6174d7be4650d0056db0ff98086edffd8",
"81ffbd9b9e760773e79169ced28e0a755be3713dd65472eb09b7f50e8558285c"
],
"logIndex": 19137053,
"rootHash": "71f7702f1cf5bbe8bfe810378342bbe59084ec3d0643008e0a803726494c73f1",
"treeSize": 19154439
},
"signedEntryTimestamp": "MEQCIGAAHh4xkS1qxf8uCKDjmW2v3Cjaa7fPUGaKdl5RIZ1yAiBkH6Z07lZUDMKKuk/qEquaq5e/7nGma3PQO5jx2F2enw=="
}
}
Loading