Syndicated Blog

GitGuardian Blog – Take Control of Your Secrets Security
A blog for developers, security engineers, and other cybersecurity professionals to learn about secrets and code security, DevSecOps, Infra-as-Code and much more.
GitGuardian Launches NHI Governance to Secure Non-Human Identities and Their Secrets for Enterprises

GitGuardian Launches NHI Governance to Secure Non-Human Identities and Their Secrets for Enterprises

| | Product News
Secrets sprawl is a growing cybersecurity challenge, especially with NHIs. GitGuardian's new NHI Governance product offers centralized inventory and lifecycle management to help enterprises regain control over their secrets and prevent costly ...
A Security Leader’s Perspective on The Real Business Risks of Secrets Managers Redundancy

A Security Leader’s Perspective on The Real Business Risks of Secrets Managers Redundancy

Redundancy in secrets management introduces risks, as well as operational complexity, ultimately undermining overall security maturity ...
AI Is the New Trust Boundary: STL TechWeek Reveals the Risk Shift

AI Is the New Trust Boundary: STL TechWeek Reveals the Risk Shift

| | Conferences
At St. Louis TechWeek 2025, AI took center stage as industry thought leaders shared sessions warning about inputs, data health, and how agents are the new attack surface ...
How to Handle Secrets in Docker

How to Handle Secrets in Docker

| | Best Practices
DevOps engineers must handle secrets with care. In this series, we summarize best practices for leveraging secrets with your everyday tools ...
From Alert to Action: Best Practices to Handle Responsible Disclosure

From Alert to Action: Best Practices to Handle Responsible Disclosure

|
Responsible disclosure is an often overlooked but critical component of cybersecurity alerting processes. Explore key best practices that can enhance communication and collaboration with researchers, turning potential security threats into opportunities for ...
BSides San Diego 2025: Shifting the Risk Conversation By The Sea Shore

BSides San Diego 2025: Shifting the Risk Conversation By The Sea Shore

| | Conferences
Discover how BSidesSD 2025 challenged traditional GRC, spotlighted data poisoning, and promoted human-driven security insights. Read our highlights from this community event ...
The Hidden Breach: Secrets Leaked Outside the Codebase Pose a Serious Threat

The Hidden Breach: Secrets Leaked Outside the Codebase Pose a Serious Threat

Secrets aren't just in code. GitGuardian’s 2025 report shows major leaks in collaboration tools like Slack, Jira, and Confluence. Here’s what security teams need to know ...
SnowFROC 2025: A Chilly Reminder That OWASP Matters and Exploring Secure Coding Practices with AI Coding Bots

SnowFROC 2025: A Chilly Reminder That OWASP Matters and Exploring Secure Coding Practices with AI Coding Bots

| | Conferences
At Denver's SnowFROC, security pros tackled the importance of OWASP’s evolving Top 10 and exposed the current shortcomings of AI-generated code for production systems ...
Yes, GitHub's Copilot can Leak (Real) Secrets

Yes, GitHub’s Copilot can Leak (Real) Secrets

Researchers successfully extracted valid hard-coded secrets from Copilot and CodeWhisperer, shedding light on a novel security risk associated with the proliferation of secrets ...
GitGuardian's Secrets Risk Assessment: Know Your True Exposure For Free

GitGuardian’s Secrets Risk Assessment: Know Your True Exposure For Free

| | Secrets detection
Go beyond GitHub's scope. Understand the full picture of your secret leaks with GitGuardian, covering public and internal exposures ...