#credential-leakage

[ follow ]
fromInfoQ
5 days ago
Information security

Two Missing Characters: How a Regex Flaw Exposed AWS GitHub Repos to Supply-Chain Risk

A regex misconfiguration in AWS CodeBuild webhook filters allowed attacker-controlled GitHub actor IDs to hijack AWS-managed repositories, leak credentials, and risk AWS Console supply-chain compromise.
Information security
fromSecuritymagazine
2 months ago

65% of the Forbes AI 50 List Leaked Sensitive Information

Many leading private AI companies have leaked sensitive credentials on GitHub, risking exposure of training data, private models, and organizational assets.
[ Load more ]