Cloud Security Podcast cover image

THEY SCANNED ENTIRE GITHUB FOR SECRETS AND FOUND THIS!

Cloud Security Podcast

00:00

How to Prevent Accidental Leakages on GitHub

GitHub has a public API. Anyone can view it. You don't need authentication. There's a public ledger of every single repository. And everything that's happening lives. Very easy to scan. One of the most interesting events that you can scan for is what they call the public event. This is when a private repository is now made public. Remember that when you make a repository public, you're making all of its history public too. That's something that often contains secrets.

Transcript
Play full episode

The AI-powered Podcast Player

Save insights by tapping your headphones, chat with episodes, discover the best highlights - and more!
App store bannerPlay store banner
Get the app