HomeSecurity OperationsExposed Git Tokens and Secrets Being Targeted by Hacker Scans

Exposed Git Tokens and Secrets Being Targeted by Hacker Scans

Published on

spot_img

  • GreyNoise observed a notable surge in scanning activities.
  • IPs originating from Singapore are searching for exposed Git configuration files, predominantly within Singapore’s digital landscape.
  • The compromised files may contain sensitive information, including login credentials and access tokens.

Cybersecurity researchers from GreyNoise have highlighted a concerning trend in Singapore, where local threat actors appear to be actively targeting organizations for potential exploitation. In a recent analysis, the firm reported a substantial uptick in reconnaissance activities indicative of cyber exploitation attempts.

On April 20-21, GreyNoise recorded an alarming increase in the number of unique IP addresses engaged in scanning for exposed Git configuration files. The statistics revealed a staggering 4,800 unique IP addresses implicated in this activity during just those two days—a marked increase compared to typical scanning levels.

While the majority of these IPs were located in Singapore, GreyNoise noted that several came from countries such as the United States, Germany, the United Kingdom, and the Netherlands. The scanners were predominantly focused on networks within Singapore but extended their efforts to other countries, including the US, UK, Germany, and India.

Source link

Latest articles

Critical Splunk Enterprise Pre-Authentication RCE Chain Exposes Databases

Critical Vulnerability Discovered in Splunk Enterprise: Pre-Authentication Remote Code Execution Risk A significant pre-authentication remote...

Meta AI Bug Exposes More Than 20,000 Instagram Accounts

Meta Exposes Vulnerability Leading to Compromised Instagram Accounts Meta Platforms, the parent company of Instagram,...

From Documents to Machine Intelligence

Policy as Code Revolutionizes Compliance and Governance Practices in Organizations In recent years, organizations have...

Novo Nordisk Reveals Breach of Clinical Trials Data

Novo Nordisk, a prominent Danish pharmaceutical company renowned for its role as a leading...

More like this

Critical Splunk Enterprise Pre-Authentication RCE Chain Exposes Databases

Critical Vulnerability Discovered in Splunk Enterprise: Pre-Authentication Remote Code Execution Risk A significant pre-authentication remote...

Meta AI Bug Exposes More Than 20,000 Instagram Accounts

Meta Exposes Vulnerability Leading to Compromised Instagram Accounts Meta Platforms, the parent company of Instagram,...

From Documents to Machine Intelligence

Policy as Code Revolutionizes Compliance and Governance Practices in Organizations In recent years, organizations have...