home.social

#securitycredentials — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #securitycredentials, aggregated by home.social.

fetched live
  1. Bleeping Computer: FortiBleed leak exposes Fortinet VPN credentials for 73,000 devices.. “A newly discovered data leak dubbed ‘FortiBleed’ has exposed what appears to be a collection of Fortinet and FortiGate VPN credentials for 73,932 firewall URLs at organizations worldwide.”

    https://rbfirehose.com/2026/06/17/bleeping-computer-fortibleed-leak-exposes-fortinet-vpn-credentials-for-73000-devices/
  2. The Register: Threat hunters find Google API keys still usable 23 minutes after deletion. “You know your Google API key has leaked so you rush to disable it before bad actors can start running up charges on your account. Bad news: According to security researchers at Aikido, people can use the API keys for up to 23 minutes after a user deletes them, creating a window of opportunity that, when […]

    https://rbfirehose.com/2026/05/23/the-register-threat-hunters-find-google-api-keys-still-usable-23-minutes-after-deletion/
  3. Krebs on Security: CISA Admin Leaked AWS GovCloud Keys on Github. “Until this past weekend, a contractor for the Cybersecurity & Infrastructure Security Agency (CISA) maintained a public GitHub repository that exposed credentials to several highly privileged AWS GovCloud accounts and a large number of internal CISA systems.”

    https://rbfirehose.com/2026/05/20/krebs-on-security-cisa-admin-leaked-aws-govcloud-keys-on-github/