GitHub · @github
74 followers · 131 posts · Server techhub.social

Enhanced push protection features for developers and organizations

Check it out! 👇
github.blog/2023-08-09-enhance

#secretscanning #security #opensource

Last updated 1 year ago

aegilops :github::microsoft: · @aegilops
147 followers · 576 posts · Server fosstodon.org

I’ve released more GitHub :github: Secret 🔑 Scanning 🔎 custom patterns, which you can use with Advanced Security.

Some are 🔥 (IMHO), some are for auditing only - e.g. my “common passwords” pattern, written to spot some of the most commonly leaked weak passwords - “P@55word123!” etc.

We have DataDog, Sentry, .Net configs, MS SQLServer user creation, and Bearer tokens.

aegilops.github.io/posts/new-g

#github #secretscanning #appsec #sdlc #regex

Last updated 1 year ago

aegilops :github::microsoft: · @aegilops
147 followers · 576 posts · Server fosstodon.org

I’ve released more GitHub :github: Secret 🔑 Scanning 🔎 custom patterns, which you can use if you have Advanced Security.

Some are 🔥 (if I say so myself), some are for auditing only - e.g. my “common passwords” pattern, written to spot some of the most commonly leaked weak passwords - “P@55word123!” and the like.

We’ve got DataDog, Sentry, .Net configs, MS SQLServer user creation, and Bearer tokens.

lnkd.in/eqRG_FRa

#github #secretscanning #appsec #sdlc #SecretsManagement #regex

Last updated 1 year ago

GitHub · @github
19 followers · 67 posts · Server techhub.social
aegilops :github::microsoft: · @aegilops
122 followers · 453 posts · Server fosstodon.org

I kicked off my blog with a post about writing regex for GitHub Secret Scanning's custom patterns (which you get if you pay for Advanced Security):

aegilops.github.io/posts/regex

#github #secretscanning #securecoding #devsecops #regex #hyperscan

Last updated 2 years ago

Romano Roth · @romanoroth
13 followers · 43 posts · Server fosstodon.org

Do you know if you have secrets in your own code or configuration files in your repository?

In part 7/12 of our video series, Patrick Steger and I will show you how to find secrets in your own code or configuration files using @github .

👉 youtu.be/k-uuPTLNXGM

Here you can find our comparison of GitLab vs. GitHub: romanoroth.com/post/gitlab-vs-

#github #devsecops #devops #secretscanning #vulnerability

Last updated 2 years ago

Rob Bos · @Rob_Bos
124 followers · 644 posts · Server mstdn.social

I have enabled GitHub's Secret scanning for 14k forked repositories from the Actions Marketplace. Here is what I have found (and why you should make sure you have this enabled)!

devopsjournal.io/blog/2023/01/

#GitHub #secretscanning #devsecops

Last updated 2 years ago

Geekmaster đź‘˝ · @Geekmaster
75 followers · 509 posts · Server ioc.exchange

This is excellent news! GitHub is now providing secrets scanning for free for everyone! thehackernews.com/2022/12/gith

#wootwoot #github #secretscanning #securecode

Last updated 2 years ago