logo

Podcast: Uber Breach Puts Focus on Securing DevOps Secrets

ID: b3721bf2-8bb2-5ee9-8303-df0ccb39d4a7

STIX ID: report--b3721bf2-8bb2-5ee9-8303-df0ccb39d4a7

Feed Name: Security Ledger

Threat Score
85/100

Date Published: 2017-11-29

Date Updated: 2026-04-26

Author: Paul Roberts

...
...

The article examines the Uber breach that exposed data on 57 million customers and 600,000 drivers after attackers discovered developer credentials published to GitHub, and uses the case to highlight the systemic risk of "DevOps secrets" — API keys, passwords and other sensitive credentials embedded in code, developer laptops, or build systems — featuring expert commentary from Elizabeth Lawler (CyberArk) on the need to treat application code as a privileged identity and secure secrets across development workflows.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.