A CISA contractor maintained a public GitHub repository that exposed credentials to highly privileged AWS GovCloud accounts and numerous internal CISA systems. The repository also contained files detailing CISA's internal software build, test, and deployment processes. Security experts are calling it one of the most egregious government data leaks in recent history. The repository was taken down as of the past weekend.

1m read timeFrom schneier.com
Post cover image

Sort: