Lessons Learned from CISA’s Recent GitHub Leak
CYBERSECURITY FEATURED ANALYSIS

Lessons Learned from CISA’s Recent GitHub Leak

BY

BrianKrebs

SOURCE

Krebs on Security

DATE

READ

1 min read

The Cybersecurity and Infrastructure Security Agency (CISA) has issued a postmortem on a data leak in which a contractor published dozens of internal CISA credentials – including AWS Govcloud keys – in a …

The Cybersecurity and Infrastructure Security Agency (CISA) has issued a postmortem on a data leak in which a contractor published dozens of internal CISA credentials – including AWS Govcloud keys – in a public GitHub repository for almost six months before being notified by KrebsOnSecurity. Experts say the gaps identified in the agency’s initial response provide important lessons that all security teams should absorb.