FIRESIDE CHAT: Leaked secrets are now the go-to attack vector — and AI is accelerating exposures
ID: b975a4b8-7b41-50b6-a5cb-7729f418a78b
STIX ID: report--b975a4b8-7b41-50b6-a5cb-7729f418a78b
Feed Name: Security Boulevard
The report describes a growing enterprise threat where leaked credentials and stolen OAuth tokens have become the primary initial access vector: GitGuardian found 28.6 million exposed secrets in 2025 (with private repos worse and 64% of 2022 credentials still active), and incidents like the Salesloft campaign showed stolen tokens used to exfiltrate Salesforce data from hundreds of organizations; AI-assisted code and non-developer commits are accelerating the problem and governance and workload identity controls lag behind.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
