home.social

#hudsonrock — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #hudsonrock, aggregated by home.social.

fetched live
  1. Hey everyone! Terabytes worth of #credentials, for more than 2500 massive Fortune 500 type orgs have been exposed in a supply-chain attack on #LiteLLM.

    The breach was reported Tuesday and Wednesday by security firms #CloudSEK and #HudsonRock. (Links below) CloudSEK said it found cloud keys, repository tokens, #SSH keys, #Kubernetes secrets, package publishing credentials, environment variables, and AI provider #keys.

    This, in the world of #infosec, is called A Bad Thing. The fact that some of the credentials are still live, is mind boggling.

    #ai #security #SupplyChainAttack #hack

    cloudsek.com/blog/ai-supply-ch

    Companies exposed: exposure.cloudsek.com/ai-suppl

    hudsonrock.com/blog/largest-ai

    ArsTecnica overview: arstechnica.com/security/2026/

  2. bit.ly/3WGxTXo
    Two days ago Chief Technology Officer of #HudsonRock, cyber-security company, posted on #LinkedIn about an alleged security breach on🐦#Twitter
    A🕵️🖥️#hacker collective under #Ryushi nickname claimed to have stolen data -📧#emails, 📱phone numbers- from some 400 million🐦Twitter high profile users in early 2022 and has put up for sale. More on this topic soon