logo

Attackers Ramp Up Efforts Targeting Developer Secrets

ID: 0f166bd4-14bf-523d-b277-2a913976ce2d

STIX ID: report--0f166bd4-14bf-523d-b277-2a913976ce2d

Feed Name: Dark Reading

Threat Score
70/100

Date Published: 2025-05-02

Date Updated: 2026-04-21

Author: Robert Lemos, Contributing Writer

...
...

GreyNoise telemetry detected significant, intermittent spikes of large-scale scanning from cloud-provider IP ranges targeting environment and Git configuration files to discover leaked development secrets and source code; GitHub and GitGuardian data show millions of secrets exposed in repositories, increasing the risk of credential abuse, lateral movement, and broader organizational compromise. Recommended mitigations include enabling Push Protection, running secret-risk assessments, using dedicated secrets-management platforms, educating developers, and rotating compromised credentials.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.