Ir al contenido
Jeturing Inc
  • Blog
  • Cursos
  • +1401-648-2327
  • Iniciar sesión
  • Contáctenos
Jeturing Inc
      • Blog
      • Cursos
    • +1401-648-2327
    • Iniciar sesión
    • Contáctenos

    CISA's GitHub leak — 844 MB of credentials exposed for…

    Publicado originalmente en LinkedIn — 2026-07-14
  • Todos los blogs
  • Viajes
  • CISA's GitHub leak — 844 MB of credentials exposed for…
  • 5 de octubre de 2026 por
    CISA's GitHub leak — 844 MB of credentials exposed for…
    Jhonatan Carvajal

    CISA's GitHub leak — 844 MB of credentials exposed for six months — exposes a reality most US fintech CISOs won't admit: credential detection at scale is broken. Two distinct threat actors are now using OAuth client ID spoofing to validate stolen Microsoft Entra credentials without triggering alerts. Meanwhile, 85 crypto wallet extensions leak enough user data to enable cross-site tracking. These aren't isolated incidents. They're signals that your fragmented security stack cannot keep pace with how attackers actually move through cloud environments and across authentication layers. In Latin America and the Caribbean, I've seen fintech teams solve this by consolidating risk signals—scanner output, credential exposure, configuration drift, threat intel—into a single validation engine. One client in Puerto Rico cut their mean time to validate compromised credentials from 47 days to 4 days by connecting their secret management, identity systems, and exposure data feeds into a unified platform. The lesson from CISA's failure isn't about GitHub security. It's about visibility gaps between your tools. Your OAuth flows, your wallet integrations, your firmware baseline—they all need to feed one coherent picture. How are you currently bridging the blind spots between your identity platform and your exposure management tools? 🔍 🔐 #cybersecurity #CISO #infosec

    en Viajes
    Forg365 cuesta 400 dólares mensuales y ya está cazando cuentas…
    Publicado originalmente en LinkedIn — 2026-07-13
    Enlaces útiles
    • Inicio
    • Sobre nosotros
    • Productos
    • Servicios
    • Legal
    • Política de Privacidad
    • Contáctenos
    Sobre nosotros

    Jeturing nació con una convicción simple: la ciberseguridad de nivel empresarial y el software empresarial en la nube no deberían ser exclusivos de las grandes corporaciones.

    Construimos productos disruptivos de seguridad y SaaS — Segrd y Sajet — diseñados específicamente para pymes y socios MSP en Estados Unidos y América Latina.

    Contáctenos
    • Contáctenos
    • [email protected]
    • +1401-648-2327
    Síguenos
    Derechos de autor © Jeturing
    English (US) | Español
    Operado por Jeturing Sajet - Crea tu sitio web