Viewing profile — mackenzie-gg
mackenzie-gg
HN member- Joined
- Thu, Apr 16, 2020, 12:33 PM UTC
- HN karma
- 79
- Public activity
- 17 items
- HN profile
- View on Hacker News ↗
About mackenzie-gg
No profile information was provided.
Recent public activity
- story
- story
- story
-
comment
Comment #25443891
Check HackerOne to see if the company is listed. This is a site where white hat hackers can post vulnerabilities and in return get rewarded for bounties. If you have information on…
-
comment
Comment #25443805
What is interesting here though that this, like the Covid-19 leak in Brazil, the leak was on an employees GitHub. Not a companies account. So sure the employee could have prevented…
-
comment
Comment #25443776
You can put detection in the CI/CD pipeline to prevent from getting into the repository. And in any case. Knowing the horses have run away as soon as possible is pretty essential i…
-
comment
Comment #25033485
It's a difficult challenge. Secrets detection is probabilistic, without checking the credentials it's nearly impossible to determine, with 100% accuracy, a true vs a false positive…
-
comment
Comment #25032938
GitGuardian scans on every event, this includes a public event (when a Repo is made public) and will alert if secrets are found within.
- story
- story
- story
- story
- story
- story
-
comment
Comment #23677825
How to scan local files for secrets like API keys and security certificates in python using the GitGuardian API.
- story
- story