Secrets detection

A collection of 55 posts

Why you should look beyond source code for exposed secrets

Why you should look beyond source code for exposed secrets

Learn more about the various sources of exposed secrets beyond source code repositories. From CI/CD systems to container images, runtime environments to project management tools, uncover the risks associated with storing secrets in these sources.

The Secret Vulnerability Finance Execs are Missing

The Secret Vulnerability Finance Execs are Missing

Discover the overlooked vulnerability lurking in every corner of the finance industry. Hardcoded credentials in source code are an easy target for hackers, yet so common they're rarely discussed. Learn what companies can do to protect themselves against costly breaches.

GitGuardian vs. Custom-Built Secrets Detection Tools

GitGuardian vs. Custom-Built Secrets Detection Tools

DIY or open-source secrets detection can seem cost-effective and customizable initially... until you start hitting the first obstacles like scalability, developer experience (DX), or deep application security expertise. Read on to find out how GitGuardian can help you rise above these!

The State of Secrets Sprawl 2023

The State of Secrets Sprawl 2023

The report reveals an unprecedented number of hard-coded secrets in new GitHub commits over the year 2022. And much more.

GitGuardian Secrets Detectors 2022 Wrap-Up

GitGuardian Secrets Detectors 2022 Wrap-Up

The GitGuardian team is still striving to provide the broadest secrets detection engine, helping you find and fix all sorts of hardcoded secrets! Learn more about the specific and generic detectors our team has released in 2022 in this post.

arrow-down