Many top-level open source projects found leaking GitHub auth tokens



Many top-level open source projects have been found leaking GitHub auth tokens, putting entire projects at risk of data theft and malicious code tampering.

Cybersecurity researchers from Unit 42 discovered the mishap and reported it to both GitHub and corresponding project owners – however GitHub said it wouldn’t be addressing the issue, and that the security of auth tokens lies solely with project owners.



Source link

Related posts

Leave a Comment