CISA Admin Leaked AWS GovCloud Keys on GitHub
8.5 relevance
Score Breakdown
technical depth 8
novelty 7
actionability 6
community 9
strategic 8
personal 8
Scored daily by a customisable AI persona to surface the most relevant engineering leadership news.
AWS GovCloud key leak, high technical detail and security relevance.
Summary
A CISA contractor's public "Private-CISA" GitHub repo exposed admin keys to three AWS GovCloud accounts, plaintext passwords for dozens of internal systems (including the agency's software artifactory), and detailed build processes — after the admin disabled GitHub's automated secret detection. GitGuardian discovered the leak, which security experts describe as one of the worst government data breaches; CISA is investigating.