Over 23.7 million hardcoded secrets including passwords, database connection strings, and encryption keys were exposed on GitHub in a 25% increase from the previous year, despite enhanced security efforts. Most leaks involved MongoDB credentials and ODBC connections particularly in private repositories, suggesting a risky reliance on security through obscurity. Concurrently, Cybernews revealed that over 815,000 hardcoded secrets were exposed by iOS apps in the Apple App Store, impacting over 156,000 apps and indicating a systemic issue in securing sensitive data.
Source: https://www.scworld.com/brief/tens-of-millions-of-secrets-publicly-exposed-in-github-last-year
"id": "git748031325",
"linkid": "github",
"type": "Breach",
"date": "3/2025",
"severity": "100",
"impact": "5",
"explanation": "Attack threatening the organization’s existence"