Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

Fresh From The Docks: Uncovering 100,000 Valid Secrets in DockerHub

This post details the methodology used to scan 15 million Docker images, uncovering a staggering 100,000 valid secrets, including AWS, GCP, and GitHub tokens belonging to Fortune 500 companies. This emphasizes the critical need for improved security practices in containerized environments.

Q1 2025 Recap: GitGuardian Doubles Down on Secrets Security and Machine Identity Control

GitGuardian launches new NHI Governance, enhanced synergies with Secret Manager integrations, smarter context analysis, container registry scanning, historical scanning for Jira & Confluence, and more. Take control of your secrets security, and machine identities.

Securing Jira: protect, audit, and recover your data with confidence

Join us for a roundtable on Jira security and its role in an organization's cyber resilience. Experts from GitProtect.io, Atlassian, Siebert Group, and SaaSJet discuss Jira backup and disaster recovery best practices Atlassian Marketplace security and compliance Issue changes visibility and its role in full compliance User anonymization and auto-processing of sensitive information.

A Look Into the Secrets of MCP: The New Secret Leak Source

MCP rapidly enhances AI capabilities but introduces security challenges through its distributed architecture. Especially, the distributed nature of MCP requires a lot of NHIs and their secrets. Our research shows that MCP is a new source of leaks that already discloses real-world secrets.