N7x@infosec.pub to appsec@infosec.pubEnglish · 2 years agoGitHub Copilot, Amazon Code Whisperer emit people's API keyswww.theregister.comexternal-linkmessage-square11fedilinkarrow-up120
arrow-up120external-linkGitHub Copilot, Amazon Code Whisperer emit people's API keyswww.theregister.comN7x@infosec.pub to appsec@infosec.pubEnglish · 2 years agomessage-square11fedilink
minus-squarepixxelkick@lemmy.worldlinkfedilinkEnglisharrow-up2·2 years agoWe load all secrets in from an instance of Hashicorp Vault we have running. It’s pretty easy API to use, has packages for most languages, has a solid docker image, and is compatible with pretty much every type of storage under the sun.
We load all secrets in from an instance of Hashicorp Vault we have running.
It’s pretty easy API to use, has packages for most languages, has a solid docker image, and is compatible with pretty much every type of storage under the sun.