Skip to content

BSL226 — Using method OSUsers

Summary

Using method OSUsers

Identifiers

Field Value
Rule code BSL226
Compatible alias OSUsersMethod
Severity WARNING
Enabled by default Yes
Implemented Yes
Tags security

Behavior

  • The public identifier BSL226 and alias OSUsersMethod are stable.
  • The rule reports the cases documented on this page.
  • Suppressions and project configuration are applied before publication.
  • The rule requires neither an external analyzer nor network access.

Configuration and suppression

BSL### is the primary stable identifier. The compatible alias is accepted in select, ignore, and compatible block suppression comments.

[tool.onec-hbk-bsl]
select = ["BSL226"]
ignore = ["OSUsersMethod"]

All three suppression families support both a current line and a range. When an opening comment follows code, it affects only that line. Use any one form:

  • noqa:
Value = "example";  // noqa: BSL226
  • bsl-disable:
Value = "example";  // bsl-disable: BSL226
  • compatible BSLLS form:
Value = "example";  // BSLLS:OSUsersMethod-off

When the same opening comment is on a line by itself, it starts a range. Close it with the matching marker from the same family:

// noqa: BSL226
// code without this diagnostic
// noqa-enable: BSL226

// bsl-disable: BSL226
// code without this diagnostic
// bsl-enable: BSL226

// BSLLS:OSUsersMethod-off
// code without this diagnostic
// BSLLS:OSUsersMethod-on

To disable the rule until the end of the file, omit the closing noqa-enable, bsl-enable, or BSLLS:…-on marker.

Opening and closing markers must belong to the same family.

Description

Using method may carry a malicious function.

Sources

Source: Pass-the-hash attack