Veille cybersecurite : Lessons Learned from CISA’s Recent GitHub Leak
Source : Krebs on Security
The Cybersecurity and Infrastructure Security Agency (CISA) has issued a postmortem on a data leak in which a contractor published dozens of internal CISA credentials — including AWS Govcloud keys — in a public GitHub repository for almost six months before being notified by KrebsOnSecurity. Experts say the gaps identified in the agency’s initial response provide important lessons that all security teams should absorb.
Vous vous demandez si votre entreprise est exposee a ce type de faille ? Reservez un appel decouverte gratuit.