:
[SECURITY]■ STORY TIMELINE

CISA DETAILS LESSONS FROM MONTHS-LONG GITHUB LEAK

The Cybersecurity and Infrastructure Security Agency has released a postmortem on a significant security breach where a contractor accidentally published internal credentials—including AWS Govcloud keys—to a public GitHub repository. The credentials remained exposed for nearly six months before KrebsOnSecurity alerted the agency.

2 SOURCESFIRST SEEN JUL 13, 03:03 PM► READ THE ARTICLE
Krebs on Security+0m

The Cybersecurity and Infrastructure Security Agency (CISA) has issued a postmortem on a data leak in which a contractor…

The Decoder+2d 16h

xAI's command-line tool "Grok Build" silently uploaded entire directories to Google Cloud servers, including SSH keys an…