Episodes

Thursday May 28, 2026
In plain sight: hunting secrets shared in code
Thursday May 28, 2026
Thursday May 28, 2026
Security researchers have found millions of hard-coded secrets, in plain text, across both public and private code repositories.
These include credentials, API keys, AI tokens and MCP configuration files.
And AI is making the problem worse, with AI-assisted commits adding to this "secrets sprawl".
Unless developers control how they manage secrets in their code, we are leaving the door open to malicious actors. And the growth of non-human identities (NHIs) only makes it worse.
Our guest is Dwayne McDaniel, principal developer advocate at GitGuardian, which recently published their research into secrets sprawl.
Version: 20241125


No comments yet. Be the first to say something!