N7x@infosec.pub to appsec@infosec.pubEnglish · 1 year agoGitHub Copilot, Amazon Code Whisperer emit people's API keyswww.theregister.comexternal-linkmessage-square11fedilinkarrow-up120arrow-down11
arrow-up119arrow-down1external-linkGitHub Copilot, Amazon Code Whisperer emit people's API keyswww.theregister.comN7x@infosec.pub to appsec@infosec.pubEnglish · 1 year agomessage-square11fedilink
minus-squarepixxelkick@lemmy.worldlinkfedilinkEnglisharrow-up2·1 year agoWe load all secrets in from an instance of Hashicorp Vault we have running. It’s pretty easy API to use, has packages for most languages, has a solid docker image, and is compatible with pretty much every type of storage under the sun.
We load all secrets in from an instance of Hashicorp Vault we have running.
It’s pretty easy API to use, has packages for most languages, has a solid docker image, and is compatible with pretty much every type of storage under the sun.