The Double-Edged Sword of Non-Human Identities
ID: 746c61e9-3391-576a-831a-a3a24def20ce
STIX ID: report--746c61e9-3391-576a-831a-a3a24def20ce
Feed Name: Bleeping Computer
Flare research uncovered over 10,000 Docker Hub images leaking thousands of live machine credentials (API keys, cloud tokens, CI/CD secrets), and the report uses high-profile examples—Snowflake (165 customer compromises via exposed credentials), a year-long Home Depot GitHub token exposure, and a Red Hat GitLab breach—to illustrate how leaked non-human identities enable persistent, silent access across cloud and development pipelines; it urges automated secret scanning, ephemeral credentials, and continuous exposure management.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
