Get the latest tech news

GitLab scan finds 17,000 secrets in public repos, leading to $9000+ in bounties


I scanned every public GitLab Cloud repository (~5.6 million) with TruffleHog, found over 17,000 verified live secrets, and earned over $9,000 in bounties along the way.

None

Get the Android app

Or read this on Hacker News

Read more on:

Photo of secrets

secrets

Photo of GitLab

GitLab

Photo of bounties

bounties

Related news:

News photo

GitLab discovers widespread NPM supply chain attack

News photo

TSMC lawsuit claims former exec is probably leaking secrets to Intel

News photo

Passwork 7: Self-hosted password and secrets manager for enterprise teams