Have I lost my Secrets?
Have I lost my Secrets?

Have I lost my Secrets?

Quenn D

27 min0 plays0 favorites
Knowledge
Play

Description

<p>You know that feeling when you are unsure if you AWS secret that leaked is still available for use. There is no easy way to check this apart from looking in AWS to see if anyone used it. Turns out there could be another way.We have <a href="https://www.linkedin.com/in/ghallebziad/" target="_blank" rel="noopener noreferer">Ziad Ghalleb</a> from <a href="https://www.gitguardian.com/" target="_blank" rel="noopener noreferer">GitGuardian</a> to share free tool they released to help people look up if their secret was exposed on Github</p> <p><br></p> <p>Thank you to our episode sponsors <a href="https://www.gitguardian.com/" target="_blank" rel="noopener noreferer">GitGuardian</a> and <a href="sysdig.com/cloudsecuritypodcast" target="_blank" rel="noopener noreferer">Sysdig </a></p> <p><br></p> <p><strong>Guest Socials: Ziad&#39;s Linkedin </strong><a href="https://www.linkedin.com/in/ghallebziad/" target="_blank" rel="noopener noreferer"><strong>(@ghallebziad)</strong></a></p> <p><strong>Podcast Twitter </strong>- <a href="https://twitter.com/cloudsecpod">⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠<strong>@CloudSecPod</strong>⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠</a><strong> </strong><a href="https://twitter.com/CloudSecureNews">⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠</a></p> <p><strong>If you want to watch videos of this LIVE STREAMED episode and past episodes - Check out our other Cloud Security Social Channels:</strong></p> <p>- ⁠⁠⁠⁠<a href="https://www.cloudsecuritynewsletter.com/">⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠<strong>Cloud Security Newsletter </strong>⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠</a></p> <p><strong>- </strong><a href="https://www.cloudsecuritybootcamp.com/">⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠<strong>Cloud Security BootCamp</strong>⁠</a> Questions asked: (00:00) Introduction </p> <p>(04:53) A bit about Ziad</p> <p>(05:47) What are secrets?</p> <p>(07:37) Has my secret leaked</p> <p>(08:46) How would users know?</p> <p>(10:31) Whats the risk?</p> <p>(15:43) What do orgs do for secrets?</p> <p>(18:01) Keeping tab on your secrets</p> <p>(20:33) Secrets management maturity </p> <p>(22:43) Scaling Secrets manag

Creators

isla_wave

isla_wave

Creator