#apikeys — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #apikeys, aggregated by home.social.
-
Ваш API-ключ утечёт. Как сделать так, чтобы это ничего не стоило
По данным GitGuardian ( State of Secrets Sprawl ), только за 2024 год в публичный GitHub утекло около 23,7 млн секретов — ключей API, токенов, паролей. Подавляющее большинство — не результат взлома, а обычные коммиты, логи и клиентские бандлы. Свежий ключ, попавший в публичный репозиторий, боты начинают пробовать меньше чем через минуту. Вывод, к которому мы пришли после N-го инцидента: бороться за то, чтобы ключ не утёк — проигранная война. Выигрышная — сделать утечку бесполезной.
https://habr.com/ru/articles/1056070/
#apikeys #security #credentialproxy #mcp #secretsmanagement #aiagents #openai
-
Ваш API-ключ утечёт. Как сделать так, чтобы это ничего не стоило
По данным GitGuardian ( State of Secrets Sprawl ), только за 2024 год в публичный GitHub утекло около 23,7 млн секретов — ключей API, токенов, паролей. Подавляющее большинство — не результат взлома, а обычные коммиты, логи и клиентские бандлы. Свежий ключ, попавший в публичный репозиторий, боты начинают пробовать меньше чем через минуту. Вывод, к которому мы пришли после N-го инцидента: бороться за то, чтобы ключ не утёк — проигранная война. Выигрышная — сделать утечку бесполезной.
https://habr.com/ru/articles/1056070/
#apikeys #security #credentialproxy #mcp #secretsmanagement #aiagents #openai
-
Ваш API-ключ утечёт. Как сделать так, чтобы это ничего не стоило
По данным GitGuardian ( State of Secrets Sprawl ), только за 2024 год в публичный GitHub утекло около 23,7 млн секретов — ключей API, токенов, паролей. Подавляющее большинство — не результат взлома, а обычные коммиты, логи и клиентские бандлы. Свежий ключ, попавший в публичный репозиторий, боты начинают пробовать меньше чем через минуту. Вывод, к которому мы пришли после N-го инцидента: бороться за то, чтобы ключ не утёк — проигранная война. Выигрышная — сделать утечку бесполезной.
https://habr.com/ru/articles/1056070/
#apikeys #security #credentialproxy #mcp #secretsmanagement #aiagents #openai
-
https://www.europesays.com/ie/539553/ JetBrains plug-ins steal API keys from AI services #AIAssistants #AikidoSecurity #APIKeys #developers #Éire #IE #Ireland #JetBrains #Security #Technology
-
AI Agents Grapple with API Key Vulnerabilities
AI agents can access and leak sensitive API keys due to broad permissions. This puts user data at risk. Learn how to prevent it.
#AIsecurity, #APIkeys, #DataProtection, #Cybersecurity, #AIAgents
https://newsletter.tf/ai-agents-risk-exposing-api-keys-data-leaks/
-
AI agents are putting user data at risk by potentially exposing sensitive API keys. This is a major security concern for many systems.
#AIsecurity, #APIkeys, #DataProtection, #Cybersecurity, #AIAgents
https://newsletter.tf/ai-agents-risk-exposing-api-keys-data-leaks/ -
Grok's Inroads: A Technical Glimpse Into OpenClaw's Integration
OpenClaw is integrating with Grok AI. Users will need OAuth or API keys to log in. This affects how people use AI tools.
#OpenClaw, #GrokAI, #OAuth, #APIkeys, #TechIntegration
https://newsletter.tf/openclaw-integrates-grok-ai-with-oauth-api-keys/
-
OpenClaw will now use Grok AI, requiring users to set up OAuth or API keys for access. This is a new way to connect AI.
#OpenClaw, #GrokAI, #OAuth, #APIkeys, #TechIntegration
https://newsletter.tf/openclaw-integrates-grok-ai-with-oauth-api-keys/ -
Software Vulnerabilities: The Risk of Exposed API Keys in Applications
Are your API keys safe in public code? Learn why hard-coding secrets in 2026 puts private user data at risk and how to stop unauthorized access today.
#cybersecurity, #codingtips, #datasecurity, #softwaredevelopment, #apikeys
-
Software developers are leaving API keys in public code, which is a 50% increase in security risks compared to 2024. This makes it easy for hackers to steal private data.
#cybersecurity, #codingtips, #datasecurity, #softwaredevelopment, #apikeys
https://newsletter.tf/exposed-api-keys-risk-2026/ -
The Register: Threat hunters find Google API keys still usable 23 minutes after deletion. “You know your Google API key has leaked so you rush to disable it before bad actors can start running up charges on your account. Bad news: According to security researchers at Aikido, people can use the API keys for up to 23 minutes after a user deletes them, creating a window of opportunity that, when […]
https://rbfirehose.com/2026/05/23/the-register-threat-hunters-find-google-api-keys-still-usable-23-minutes-after-deletion/ -
The Register: Threat hunters find Google API keys still usable 23 minutes after deletion. “You know your Google API key has leaked so you rush to disable it before bad actors can start running up charges on your account. Bad news: According to security researchers at Aikido, people can use the API keys for up to 23 minutes after a user deletes them, creating a window of opportunity that, when […]
https://rbfirehose.com/2026/05/23/the-register-threat-hunters-find-google-api-keys-still-usable-23-minutes-after-deletion/ -
The Register: Threat hunters find Google API keys still usable 23 minutes after deletion. “You know your Google API key has leaked so you rush to disable it before bad actors can start running up charges on your account. Bad news: According to security researchers at Aikido, people can use the API keys for up to 23 minutes after a user deletes them, creating a window of opportunity that, when […]
https://rbfirehose.com/2026/05/23/the-register-threat-hunters-find-google-api-keys-still-usable-23-minutes-after-deletion/ -
The Register: Threat hunters find Google API keys still usable 23 minutes after deletion. “You know your Google API key has leaked so you rush to disable it before bad actors can start running up charges on your account. Bad news: According to security researchers at Aikido, people can use the API keys for up to 23 minutes after a user deletes them, creating a window of opportunity that, when […]
https://rbfirehose.com/2026/05/23/the-register-threat-hunters-find-google-api-keys-still-usable-23-minutes-after-deletion/ -
The Register: Threat hunters find Google API keys still usable 23 minutes after deletion. “You know your Google API key has leaked so you rush to disable it before bad actors can start running up charges on your account. Bad news: According to security researchers at Aikido, people can use the API keys for up to 23 minutes after a user deletes them, creating a window of opportunity that, when […]
https://rbfirehose.com/2026/05/23/the-register-threat-hunters-find-google-api-keys-still-usable-23-minutes-after-deletion/ -
RT @AikidoSecurity: Das Löschen eines Google-API-Schlüssels widerruft ihn nicht sofort. Unsere Forschung ergab erfolgreiche Authentifizierungen bis zu 23 Minuten nach der Löschung in der gesamten Google-Infrastruktur. In diesem Zeitfenster können Angreifer mit einem geleakten Schlüssel weiterhin auf aktivierte APIs, einschließlich Gemini, zugreifen. Google hat unseren Bericht als „wird nicht behoben“ geschlossen.
mehr auf Arint.info
#APIKeys #Cybersecurity #DataProtection #Gemini #GoogleAPI #TechNews #arint_info
-
RT @AikidoSecurity: Das Löschen eines Google-API-Schlüssels widerruft ihn nicht sofort. Unsere Forschung ergab erfolgreiche Authentifizierungen bis zu 23 Minuten nach der Löschung in der gesamten Google-Infrastruktur. In diesem Zeitfenster können Angreifer mit einem geleakten Schlüssel weiterhin auf aktivierte APIs, einschließlich Gemini, zugreifen. Google hat unseren Bericht als „wird nicht behoben“ geschlossen.
mehr auf Arint.info
#APIKeys #Cybersecurity #DataProtection #Gemini #GoogleAPI #TechNews #arint_info
-
RT @AikidoSecurity: Das Löschen eines Google-API-Schlüssels widerruft ihn nicht sofort. Unsere Forschung ergab erfolgreiche Authentifizierungen bis zu 23 Minuten nach der Löschung in der gesamten Google-Infrastruktur. In diesem Zeitfenster können Angreifer mit einem geleakten Schlüssel weiterhin auf aktivierte APIs, einschließlich Gemini, zugreifen. Google hat unseren Bericht als „wird nicht behoben“ geschlossen.
mehr auf Arint.info
#APIKeys #Cybersecurity #DataProtection #Gemini #GoogleAPI #TechNews #arint_info
-
RT @AikidoSecurity: Das Löschen eines Google-API-Schlüssels widerruft ihn nicht sofort. Unsere Forschung ergab erfolgreiche Authentifizierungen bis zu 23 Minuten nach der Löschung in der gesamten Google-Infrastruktur. In diesem Zeitfenster können Angreifer mit einem geleakten Schlüssel weiterhin auf aktivierte APIs, einschließlich Gemini, zugreifen. Google hat unseren Bericht als „wird nicht behoben“ geschlossen.
mehr auf Arint.info
#APIKeys #Cybersecurity #DataProtection #Gemini #GoogleAPI #TechNews #arint_info
-
RT @AikidoSecurity: Das Löschen eines Google-API-Schlüssels widerruft ihn nicht sofort. Unsere Forschung ergab erfolgreiche Authentifizierungen bis zu 23 Minuten nach der Löschung in der gesamten Google-Infrastruktur. In diesem Zeitfenster können Angreifer mit einem geleakten Schlüssel weiterhin auf aktivierte APIs, einschließlich Gemini, zugreifen. Google hat unseren Bericht als „wird nicht behoben“ geschlossen.
mehr auf Arint.info
#APIKeys #Cybersecurity #DataProtection #Gemini #GoogleAPI #TechNews #arint_info
-
Researchers say deleted Google API keys may stay active for up to 23 minutes due to cloud propagation delays.
The issue could reportedly allow continued access to Gemini uploads, APIs, and cloud resources after key deletion.
-
Researchers say deleted Google API keys may stay active for up to 23 minutes due to cloud propagation delays.
The issue could reportedly allow continued access to Gemini uploads, APIs, and cloud resources after key deletion.
-
Researchers say deleted Google API keys may stay active for up to 23 minutes due to cloud propagation delays.
The issue could reportedly allow continued access to Gemini uploads, APIs, and cloud resources after key deletion.
-
Researchers say deleted Google API keys may stay active for up to 23 minutes due to cloud propagation delays.
The issue could reportedly allow continued access to Gemini uploads, APIs, and cloud resources after key deletion.
-
RT @AikidoSecurity: Das Löschen eines Google-API-Schlüssels widerruft ihn nicht sofort. Unsere Forschung ergab erfolgreiche Authentifizierungen bis zu 23 Minuten nach der Löschung über die Google-Infrastruktur. In diesem Zeitraum können Angreifer mit einem geleakten Schlüssel weiterhin auf aktivierte APIs, einschließlich Gemini, zugreifen. Google hat unseren Bericht als „nicht behoben“ geschlossen.
#APIKeys #Cybersecurity #DataProtection #Gemini #GoogleAPI #TechNews #arint_info
-
RT @AikidoSecurity: Das Löschen eines Google-API-Schlüssels widerruft ihn nicht sofort. Unsere Forschung ergab erfolgreiche Authentifizierungen bis zu 23 Minuten nach der Löschung über die Google-Infrastruktur. In diesem Zeitraum können Angreifer mit einem geleakten Schlüssel weiterhin auf aktivierte APIs, einschließlich Gemini, zugreifen. Google hat unseren Bericht als „nicht behoben“ geschlossen.
mehr auf Arint.info
#APIKeys #Cybersecurity #DataProtection #Gemini #GoogleAPI #TechNews #arint_info
-
1Password secures coding agents with new OpenAI Codex integration
https://fed.brid.gy/r/https://nerds.xyz/2026/05/1password-openai-codex-security/
-
1Password secures coding agents with new OpenAI Codex integration
https://web.brid.gy/r/https://nerds.xyz/2026/05/1password-openai-codex-security/
-
1Password secures coding agents with new OpenAI Codex integration
https://web.brid.gy/r/https://nerds.xyz/2026/05/1password-openai-codex-security/
-
1Password secures coding agents with new OpenAI Codex integration
https://web.brid.gy/r/https://nerds.xyz/2026/05/1password-openai-codex-security/
-
1Password secures coding agents with new OpenAI Codex integration
https://fed.brid.gy/r/https://nerds.xyz/2026/05/1password-openai-codex-security/
-
Google Cloud's Vertex AI: A Hub for Generative AI Development Navigates API Access and Integration
Google Vertex AI users get 403 errors. Learn how to fix API key and service account permissions for Gemini and other AI models.
#VertexAI, #GoogleCloud, #APIKeys, #GenerativeAI, #IAM
https://newsletter.tf/google-vertex-ai-api-key-permission-errors/
-
Google Cloud's Vertex AI: A Hub for Generative AI Development Navigates API Access and Integration
Google Vertex AI users get 403 errors. Learn how to fix API key and service account permissions for Gemini and other AI models.
#VertexAI, #GoogleCloud, #APIKeys, #GenerativeAI, #IAM
https://newsletter.tf/google-vertex-ai-api-key-permission-errors/
-
Google Cloud's Vertex AI: A Hub for Generative AI Development Navigates API Access and Integration
Google Vertex AI users get 403 errors. Learn how to fix API key and service account permissions for Gemini and other AI models.
#VertexAI, #GoogleCloud, #APIKeys, #GenerativeAI, #IAM
https://newsletter.tf/google-vertex-ai-api-key-permission-errors/
-
Google Cloud's Vertex AI: A Hub for Generative AI Development Navigates API Access and Integration
Google Vertex AI users get 403 errors. Learn how to fix API key and service account permissions for Gemini and other AI models.
#VertexAI, #GoogleCloud, #APIKeys, #GenerativeAI, #IAM
https://newsletter.tf/google-vertex-ai-api-key-permission-errors/
-
Google Vertex AI is making it easier to build AI, but many users are hitting a wall with API key errors. This is a common problem for developers.
#VertexAI, #GoogleCloud, #APIKeys, #GenerativeAI, #IAM
https://newsletter.tf/google-vertex-ai-api-key-permission-errors/ -
Google Vertex AI is making it easier to build AI, but many users are hitting a wall with API key errors. This is a common problem for developers.
#VertexAI, #GoogleCloud, #APIKeys, #GenerativeAI, #IAM
https://newsletter.tf/google-vertex-ai-api-key-permission-errors/ -
Google Vertex AI is making it easier to build AI, but many users are hitting a wall with API key errors. This is a common problem for developers.
#VertexAI, #GoogleCloud, #APIKeys, #GenerativeAI, #IAM
https://newsletter.tf/google-vertex-ai-api-key-permission-errors/ -
Google Vertex AI is making it easier to build AI, but many users are hitting a wall with API key errors. This is a common problem for developers.
#VertexAI, #GoogleCloud, #APIKeys, #GenerativeAI, #IAM
https://newsletter.tf/google-vertex-ai-api-key-permission-errors/ -
The Register: Google users fight for refunds as unauthorized API usage bills soar. “Several Google Cloud customers say their API keys have been compromised and used by bad actors to run inferencing workloads using the most expensive video and picture models, leaving them with bills for tens of thousands of dollars and weeks of back-and-forth headaches with the Chocolate Factory as they tried to […]
https://rbfirehose.com/2026/05/16/the-register-google-users-fight-for-refunds-as-unauthorized-api-usage-bills-soar/ -
The Register: Google users fight for refunds as unauthorized API usage bills soar. “Several Google Cloud customers say their API keys have been compromised and used by bad actors to run inferencing workloads using the most expensive video and picture models, leaving them with bills for tens of thousands of dollars and weeks of back-and-forth headaches with the Chocolate Factory as they tried to […]
https://rbfirehose.com/2026/05/16/the-register-google-users-fight-for-refunds-as-unauthorized-api-usage-bills-soar/ -
The Register: Google users fight for refunds as unauthorized API usage bills soar. “Several Google Cloud customers say their API keys have been compromised and used by bad actors to run inferencing workloads using the most expensive video and picture models, leaving them with bills for tens of thousands of dollars and weeks of back-and-forth headaches with the Chocolate Factory as they tried to […]
https://rbfirehose.com/2026/05/16/the-register-google-users-fight-for-refunds-as-unauthorized-api-usage-bills-soar/ -
The Register: Google users fight for refunds as unauthorized API usage bills soar. “Several Google Cloud customers say their API keys have been compromised and used by bad actors to run inferencing workloads using the most expensive video and picture models, leaving them with bills for tens of thousands of dollars and weeks of back-and-forth headaches with the Chocolate Factory as they tried to […]
https://rbfirehose.com/2026/05/16/the-register-google-users-fight-for-refunds-as-unauthorized-api-usage-bills-soar/ -
The Register: Google users fight for refunds as unauthorized API usage bills soar. “Several Google Cloud customers say their API keys have been compromised and used by bad actors to run inferencing workloads using the most expensive video and picture models, leaving them with bills for tens of thousands of dollars and weeks of back-and-forth headaches with the Chocolate Factory as they tried to […]
https://rbfirehose.com/2026/05/16/the-register-google-users-fight-for-refunds-as-unauthorized-api-usage-bills-soar/ -
Ah yes, another "revolutionary" #API promising to unite the #AI models of #Europe with the transformative power of a single login screen. 🌍🔑 Because apparently, the real challenge in AI isn't the technology, but remembering which API key unlocks #Skynet. 🤖✨
https://www.edenai.co #Revolution #Tech #Innovation #APIKeys #HackerNews #ngated -
Ah yes, another "revolutionary" #API promising to unite the #AI models of #Europe with the transformative power of a single login screen. 🌍🔑 Because apparently, the real challenge in AI isn't the technology, but remembering which API key unlocks #Skynet. 🤖✨
https://www.edenai.co #Revolution #Tech #Innovation #APIKeys #HackerNews #ngated -
Ah yes, another "revolutionary" #API promising to unite the #AI models of #Europe with the transformative power of a single login screen. 🌍🔑 Because apparently, the real challenge in AI isn't the technology, but remembering which API key unlocks #Skynet. 🤖✨
https://www.edenai.co #Revolution #Tech #Innovation #APIKeys #HackerNews #ngated -
Ah yes, another "revolutionary" #API promising to unite the #AI models of #Europe with the transformative power of a single login screen. 🌍🔑 Because apparently, the real challenge in AI isn't the technology, but remembering which API key unlocks #Skynet. 🤖✨
https://www.edenai.co #Revolution #Tech #Innovation #APIKeys #HackerNews #ngated -
Ah yes, another "revolutionary" #API promising to unite the #AI models of #Europe with the transformative power of a single login screen. 🌍🔑 Because apparently, the real challenge in AI isn't the technology, but remembering which API key unlocks #Skynet. 🤖✨
https://www.edenai.co #Revolution #Tech #Innovation #APIKeys #HackerNews #ngated -
Ah, the digital Fort Knox of API keys! 🏰 Because who wouldn't want to turn their code into an unending #security checkpoint #circus 🎪, complete with browser verifications and #JavaScript hijinks? Just what every developer dreams of: #debugging security measures instead of their actual code! 🚀
https://www.keycard.studio/ #APIkeys #DeveloperLife #HackerNews #ngated