all tags
How does Bokeh, the Python Interactive Visualization Library, Secure its Open-Source Repositories?

How does Bokeh, the Python Interactive Visualization Library, Secure its Open-Source Repositories?

With 2.5 million monthly downloads, Bokeh has made a name for itself in the world of open-source interactive visualization libraries. Read on to learn how GitGuardian helps Bryan Van de Ven (co-creator and project lead) and contributors protect their repositories against secrets leaks.

​​Happy 20th Birthday, OWASP!🎂

​​Happy 20th Birthday, OWASP!🎂

We're happy to celebrate the 20th birthday of the Open Web Application Security Project, one of the major open-source resources helping developers better understand and practice web security.

You can’t remember if you revoked that secret? We’ll help you verify with Validity Checks.

You can’t remember if you revoked that secret? We’ll help you verify with Validity Checks.

Today, we’re introducing Validity Checks in GitGuardian for Internal Repositories Monitoring. For each incident, users will now be able to verify if the leaked credentials are still valid — bringing their attention to unresolved incidents.

Red Team Chronicles Episode 4 - No Hidden Information

Red Team Chronicles Episode 4 - No Hidden Information

In this episode, you’ll discover a perfect illustration of the security knowledge gap existing between organizations. Offensive security expert Philippe Caturegli comes across a way too common belief: “nobody will find my scripts or my data because they are very carefully hidden”.

Introducing Presence Checks in GitGuardian for Internal Repositories Monitoring

Introducing Presence Checks in GitGuardian for Internal Repositories Monitoring

Today, we’re introducing Presence Checks in GitGuardian for Internal Repositories Monitoring. For each incident in the dashboard, users will now be able to verify if the leaked secret is still present or if it was completely removed from the git history.

Hunting for secrets in Docker Hub: what we’ve found

Hunting for secrets in Docker Hub: what we’ve found

In this article, we will explain why Docker images can contain sensitive information and give some examples of the type of secrets we found in public Docker images. Finally, we will compare our results to the ones we have with source code scanning.

Shift your CI to GitHub Actions

Shift your CI to GitHub Actions

Learn how to build a modern CI pipeline using GitHub Actions to achieve testing, building, and pushing Docker images. Harden your pipeline by scanning for leaked secrets and credentials with the help of GitGuardian's gg-shield action.

GitGuardian Now Available on the GitHub Marketplace (and already the #1 ranking app in the Security Category)

GitGuardian Now Available on the GitHub Marketplace (and already the #1 ranking app in the Security Category)

Today, we're excited to launch GitGuardian on the GitHub Marketplace. With this integration, more developers will find it easier to connect GitGuardian to their GitHub accounts and monitor their repositories for hardcoded credentials.

NIST's recommendations for secure DevSecOps

NIST's recommendations for secure DevSecOps

Get a taste of NIST's upcoming value propositions and steps to help companies produce secure software by our cybersecurity specialist Shimon Brathwaite.

Start your journey to secrets-free source code

And keep your secrets out of sight

arrow-down