DZone
Thanks for visiting DZone today,
Edit Profile
  • Manage Email Subscriptions
  • How to Post to DZone
  • Article Submission Guidelines
Sign Out View Profile
  • Post an Article
  • Manage My Drafts
Newsletter
Log In / Join
Refcards Trend Reports
Events Video Library
Refcards
Trend Reports

Events

View Events Video Library

Zones

Culture and Methodologies Agile Career Development Methodologies Team Management
Data Engineering AI/ML Big Data Data Databases IoT
Software Design and Architecture Cloud Architecture Containers Integration Microservices Performance Security
Coding Frameworks Java JavaScript Languages Tools
Testing, Deployment, and Maintenance Deployment DevOps and CI/CD Maintenance Monitoring and Observability Testing, Tools, and Frameworks
Partner Zones Build AI Agents That Are Ready for Production
Culture and Methodologies
Agile Career Development Methodologies Team Management
Data Engineering
AI/ML Big Data Data Databases IoT
Software Design and Architecture
Cloud Architecture Containers Integration Microservices Performance Security
Coding
Frameworks Java JavaScript Languages Tools
Testing, Deployment, and Maintenance
Deployment DevOps and CI/CD Maintenance Monitoring and Observability Testing, Tools, and Frameworks
Partner Zones
Build AI Agents That Are Ready for Production

Just dropped: New 2026 “Cloud-Native Foundations” Trend Report. See how teams are tackling complexity, cost & reliability.

Avatar

Thomas Segura

Technical Content Writer at GitGuardian

FR

Joined Sep 2021

Stats

Reputation: 490
Pageviews: 73.4K
Articles: 13
Comments: 0
  • Articles

Articles

article thumbnail
Understanding the Risks of Long-Lived Kubernetes Service Account Tokens
Kubernetes Service Account tokens are exploited in many attack chain scenarios. Learn how to mitigate these risks and secure your Kubernetes clusters effectively.
February 1, 2024
· 4,627 Views · 4 Likes
article thumbnail
AI and Cybersecurity in 2024: What's Changing and Why It Matters
Tired of the AI hype? We get it. Our latest article takes a no-nonsense look at AI in 2024's cybersecurity — just the facts and some thoughtful insights.
January 5, 2024
· 3,739 Views · 2 Likes
article thumbnail
Are the Fears About the EU Cyber Resilience Act Justified?
Discover the project and why the Cyber Resilience Act (CRA) in the EU has raised concerns about jeopardizing the open-source ecosystem.
December 22, 2023
· 4,238 Views · 1 Like
article thumbnail
HasMySecretLeaked: Building a Trustless and Secure Protocol
HasMySecretLeaked is a free service that aims to provide a secure and user-friendly way to check if secrets have been leaked on GitHub without compromising privacy.
November 22, 2023
· 1,781 Views · 1 Like
article thumbnail
Yes, GitHub's Copilot Can Leak (Real) Secrets
Researchers successfully extracted valid hard-coded secrets from Copilot and CodeWhisperer, shedding light on a novel security risk.
November 8, 2023
· 5,000 Views · 1 Like
article thumbnail
Microsoft AI Involuntarily Exposed a Secret Giving Access to 38TB of Confidential Data for 3 Years
The story of how an overprovisioned SAS token exposed a massive 38TB trove of private data on GitHub for nearly three years.
October 14, 2023
· 6,732 Views · 5 Likes
article thumbnail
The Art of Protecting Secrets: Eight Essential Concepts for SecOps Practitioners
Secrets management is an art, and mastering it requires understanding security protocols, plus a meticulous and proactive approach to staying ahead of threats.
October 3, 2023
· 2,517 Views · 1 Like
article thumbnail
Top 10 Practices for Secure Software Development
Developer security practices are about adding security at each software development stage. Here’s a list of top developer security practices to follow.
February 24, 2023
· 4,685 Views · 2 Likes
article thumbnail
Wake-Up Call: Why It's Urgent to Deal With Your Hardcoded Credentials
Why are there still thousands of secrets hiding in source code and, more importantly, how do we deal with them?
October 31, 2022
· 6,631 Views · 2 Likes
article thumbnail
Automate Boring Tasks With Hooks
Sofien, one of GitGuardian's tech leads, describes how pre-commit hooks are used to save time and also secure commits company-wide.
October 11, 2022
· 8,746 Views · 4 Likes
article thumbnail
GitHub Actions Security Best Practices [Cheat Sheet Included]
GitHub Actions is an increasingly popular CI/CD platform. They offer powerful and easy-to-access features to build automation right into any GitHub repository. However, they also require special attention to avoid any compromise. Here are the best practices to secure them.
September 17, 2022
· 7,395 Views · 1 Like
article thumbnail
4 Reasons MSPs Should Monitor Their GitHub Footprint
In this article, we will see why monitoring in real-time code-sharing platforms such as GitHub should be a top priority for any MSP.
August 11, 2022
· 4,064 Views · 3 Likes
article thumbnail
10 Rules for Better Cloud Security
Cloud security is a shared responsibility and a big challenge. Here are the basic rules to have in mind to set up efficient guardrails.
January 17, 2022
· 6,532 Views · 3 Likes

User has been successfully modified

Failed to modify user

  • RSS
  • X
  • Facebook

ABOUT US

  • About DZone
  • Support and feedback
  • Community research

ADVERTISE

  • Advertise with DZone

CONTRIBUTE ON DZONE

  • Article Submission Guidelines
  • Become a Contributor
  • Core Program
  • Visit the Writers' Zone

LEGAL

  • Terms of Service
  • Privacy Policy

CONTACT US

  • 3343 Perimeter Hill Drive
  • Suite 215
  • Nashville, TN 37211
  • [email protected]

Let's be friends:

  • RSS
  • X
  • Facebook