all tags
The Secret Vulnerability Finance Execs are Missing

The Secret Vulnerability Finance Execs are Missing

Discover the overlooked vulnerability lurking in every corner of the finance industry. Hardcoded credentials in source code are an easy target for hackers, yet so common they're rarely discussed. Learn what companies can do to protect themselves against costly breaches.

Supply Chain Security: Secrets and Modern Security Frameworks (Part III)

Supply Chain Security: Secrets and Modern Security Frameworks (Part III)

In this final part, we'll discuss more software supply chain security frameworks and the critical role of secrets detection in them. We'll explore the NIST SSDF, SLSA, and OSC&R frameworks and how they cover the topic of secrets in software supply chain security.

Best Practices for Scanning and Securing Infrastructure as Code (IaC)[cheat sheet included]

Best Practices for Scanning and Securing Infrastructure as Code (IaC)[cheat sheet included]

Discover the best practices and tools to scan and secure your infrastructure as code (IaC) throughout the DevOps software development lifecycle. From threat modeling to monitoring, this comprehensive guide offers valuable insights to improve the security, reliability, and consistency of your IaC.

GitHub Actions Security Best Practices [cheat sheet included]

GitHub Actions Security Best Practices [cheat sheet included]

Learn how to secure your GitHub Actions with these best practices! From controlling credentials to using specific action version tags, this cheat sheet will help you protect against supply-chain attacks. Don't let a malicious actor inject code into your repository - read now!

Launching GitGuardian Honeytoken: your powerful ally in detecting supply chain breaches!

Launching GitGuardian Honeytoken: your powerful ally in detecting supply chain breaches!

What if you could detect intrusions and code leaks in your software supply chain? Introducing GitGuardian Honeytoken, the solution that protects your software supply chain against potential intrusions on SCM systems, CI/CD pipelines, software artifact registries, and more.

GitGuardian Secrets Detectors Q1 2023 Wrap-Up

GitGuardian Secrets Detectors Q1 2023 Wrap-Up

GitGuardian's Q1 wrap-up highlights our progress in detecting secrets, introducing new secret detectors, and committing to code security. With six new detectors released in Q1, GitGuardian remains the go-to solution for developers looking to write more secure code.

Cyphercon 6

Cyphercon 6

Nearly 1500 cybersecurity professionals gathered in Milwaukee for Cpyphercon 6. Read the highlights from the largest hacker event in Wisconsin

Start your journey to secrets-free source code

And keep your secrets out of sight

arrow-down