HomeSecurity OperationsExposed Git Tokens and Secrets Being Targeted by Hacker Scans

Exposed Git Tokens and Secrets Being Targeted by Hacker Scans

Published on

spot_img

  • GreyNoise observed a notable surge in scanning activities.
  • IPs originating from Singapore are searching for exposed Git configuration files, predominantly within Singapore’s digital landscape.
  • The compromised files may contain sensitive information, including login credentials and access tokens.

Cybersecurity researchers from GreyNoise have highlighted a concerning trend in Singapore, where local threat actors appear to be actively targeting organizations for potential exploitation. In a recent analysis, the firm reported a substantial uptick in reconnaissance activities indicative of cyber exploitation attempts.

On April 20-21, GreyNoise recorded an alarming increase in the number of unique IP addresses engaged in scanning for exposed Git configuration files. The statistics revealed a staggering 4,800 unique IP addresses implicated in this activity during just those two days—a marked increase compared to typical scanning levels.

While the majority of these IPs were located in Singapore, GreyNoise noted that several came from countries such as the United States, Germany, the United Kingdom, and the Netherlands. The scanners were predominantly focused on networks within Singapore but extended their efforts to other countries, including the US, UK, Germany, and India.

Source link

Latest articles

New Agentjacking Attack Compromises AI Coding Agents to Run Malicious Code

A newly uncovered class of attack, referred to as "Agentjacking," has emerged, capable of...

WhatsApp Uncovers Spearphishing Attempts Linked to NSO Group

WhatsApp Seeks Court Action Against NSO Group for Violating Injunction In a significant legal move,...

US Halts Development of Anthropic’s Leading AI Models

Export-Control Order Forces Shutdown of Fable 5, Mythos 5 In a significant move, the U.S....

Rubrik Acquires Strata to Enhance Identity Resilience

In a significant move within the cybersecurity sector, Rubrik, a prominent cybersecurity firm, has...

More like this

New Agentjacking Attack Compromises AI Coding Agents to Run Malicious Code

A newly uncovered class of attack, referred to as "Agentjacking," has emerged, capable of...

WhatsApp Uncovers Spearphishing Attempts Linked to NSO Group

WhatsApp Seeks Court Action Against NSO Group for Violating Injunction In a significant legal move,...

US Halts Development of Anthropic’s Leading AI Models

Export-Control Order Forces Shutdown of Fable 5, Mythos 5 In a significant move, the U.S....