Context and Problem An AWS EKS Cluster was attacked, and its secrets were compromised. The Kubernetes Secrets were not encrypted, anyone who works with Kubernetes know they are only base64-encoded by default . Task I had a mission to scan 115 repositories across GitHub and Azure DevOps for secrets exposed anywhere in the Git history. The goal was simple: identify exposed secrets and provide actionable reports for the engineering team to fix them. A colleague recommended a tool called TruffleHog
Comment
Sign in to join the discussion.
Loading comments…