Get the latest tech news

Thousands of Corporate Secrets Were Left Exposed. This Guy Found Them All


Security researcher Bill Demirkapi found more than 15,000 hardcoded secrets and 66,000 vulnerable websites—all by searching overlooked data sources.

Today, at the Defcon security conference in Las Vegas, Demirkapi is unveiling the results of this work, detailing a massive trove of leaked secrets and wider website vulnerabilities. For instance, a member of Nebraska’s Supreme Court had uploaded details of usernames and passwords linked to its IT systems, and Stanford University Slack channels could be accessed using API keys. Liu says tens of thousands of dangling records are exposed at any one time, adding that larger domains can be more susceptible to the issue as they’re harder to manage and there’s more chance for human error.

Get the Android app

Or read this on Wired

Read more on:

Photo of Thousands

Thousands

Photo of guy

guy

Photo of corporate secrets

corporate secrets

Related news:

News photo

Apple Prototypes and Corporate Secrets Are for Sale Online—If You Know Where to Look

News photo

CSC ServiceWorks reveals 2023 data breach affecting thousands of people

News photo

Exclusive-Cisco to lay off thousands more in second job cut this year, sources say