Forensic Focus

Preventing Data Leaks With Git Guardian


Listen Later

In this episode of the Forensic Focus podcast, Si and Desi talk to Mackenzie Jackson, Developer Advocate at Git Guardian.

Mackenzie discusses the problem of hard-coded and leaked credentials in Git repositories, the task of scanning Git repositories for leaked credentials, and how that’s helped by the setup of GitHub and Git.

He also looks at some public and private cases of security breaches through Git repositories and recommends tools you can use to combat attackers on Git.

Show Notes:

Toyota Suffered a Data Breach by Accidentally Exposing A Secret Key Publicly On GitHub (GitGuardian) - https://blog.gitguardian.com/toyota-a...

GitHub.com rotates its exposed private SSH key (Bleeping Computer) - https://www.bleepingcomputer.com/news...

Conpago - https://www.conpago.com.au/

Source Code as a Vulnerability - A Deep Dive into the Real Security Threats From the Twitch Leak (GitGuardian) - https://blog.gitguardian.com/security...

Teenagers Leveraging Insider Threats: Lapsus$ Hacker Group (Forbes) - https://www.forbes.com/sites/emilsaye...

Lapsus$: Oxford teen accused of being multi-millionaire cyber-criminal (BBC) - https://www.bbc.co.uk/news/technology...

Dynamic Secrets (HashiCorp) - https://developer.hashicorp.com/vault...

Crappy code, crappy Copilot. GitHub Copilot is writing vulnerable code and it could be your fault (GitGuardian) - https://blog.gitguardian.com/crappy-c...

trufflesecurity/trufflehog (GitHub) - https://github.com/trufflesecurity/tr...

gitleaks/gitleaks (GitHub) - https://github.com/gitleaks/gitleaks

Git (Wikipedia) - https://en.wikipedia.org/wiki/Git

awslabs/git-secrets (GitHub) - https://github.com/awslabs/git-secrets

...more
View all episodesView all episodes
Download on the App Store

Forensic FocusBy Forensic Focus: Digital Forensics, Incident Response, DFIR

  • 4.7
  • 4.7
  • 4.7
  • 4.7
  • 4.7

4.7

7 ratings


More shows like Forensic Focus

View all
Security Now (Audio) by TWiT

Security Now (Audio)

2,001 Listeners

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast) by Johannes B. Ullrich

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

639 Listeners

CyberWire Daily by N2K Networks

CyberWire Daily

1,017 Listeners

Paul's Security Weekly (Audio) by Security Weekly Productions

Paul's Security Weekly (Audio)

17 Listeners

Smashing Security by Graham Cluley

Smashing Security

321 Listeners

The Daily by The New York Times

The Daily

112,582 Listeners

Darknet Diaries by Jack Rhysider

Darknet Diaries

7,971 Listeners

Blueprint: Build the Best in Cyber Defense by SANS Institute

Blueprint: Build the Best in Cyber Defense

132 Listeners

What the Hack? by DeleteMe

What the Hack?

223 Listeners

The 404 Media Podcast by 404 Media

The 404 Media Podcast

317 Listeners