Please turn JavaScript on

GitGuardian Blog - Take Control of Your Secrets Security

Following GitGuardian Blog - Take Control of Your Secrets Security's news feed is very easy. Subscribe using the "follow" button on the top right and if you want to, choose the updates by topic or tag.

We will deliver them to your inbox, your phone, or you can use follow.it like your own online RSS reader. You can unsubscribe whenever you want with one click.

Keep up to date with GitGuardian Blog - Take Control of Your Secrets Security!

GitGuardian Blog - Take Control of Your Secrets Security: GitGuardian Blog - NHI Governance & Secrets Security

Is this your feed? Claim it!

Publisher:  Unclaimed!
Message frequency:  0.47 / day

Message History

Non-human identities (NHIs) exist to perform the work that powers our applications. That work depends on access, and access, historically, depends on secrets. 

A service account authenticates to a cloud resource. A token lets a pipeline deploy. A Kubernetes workload uses a connection URL to access a database. Our SaaS integrations communicate with other SaaS integr...


Read full story

60% of the tracks of the New York City subway system are hidden underground. But there are many more invisible handoffs that keep everything running. Each train arrives because of signals, switches, power, dispatch, mainten...


Read full story

The ecosystems differed, the targets differed, and the actors may have differed. The goal was the same: get malicious code to run where developers work, and walk away with credentials.

Campaign 1 — Megalodon: 5,561 GitHub Repositories Backdoored in Six Hours

On May 18, 2026, an automated campaign pushed 5,718 malicious commits to 5,561 GitHub repositorie...


Read full story

GitGuardian helps developers and security teams detect secrets (API keys, tokens, credentials) that have been accidentally committed to source code. At the core of our platform sits our secret detection engine: a component that takes raw bytes as input and outputs detected secrets, running against hundreds of gigabytes of code and data every day. Migrating this engine to ...


Read full story