AI-powered
podcast player
Listen to all your favourite podcasts with AI-powered features
How to Fix a Token Leak in Jenkins
A researcher identified the Jenkins, which is what we've used for a home brew CI and building up binary packages had been leaking a token. That token actually gave him push access to some repos. We were able to replace them and sanitize everything in Jenkins. So this shouldn't happen in future. And so basically one of those ones were, you know, scary times, but thankfully kind of all resolved.