01.02.2024 Views

The Cyber Defense eMagazine February Edition for 2024

Cyber Defense eMagazine February Edition for 2024 #CDM #CYBERDEFENSEMAG @CyberDefenseMag by @Miliefsky a world-renowned cyber security expert and the Publisher of Cyber Defense Magazine as part of the Cyber Defense Media Group as well as Yan Ross, Editor-in-Chief and many more writers, partners and supporters who make this an awesome publication! 155 page February Edition fully packed with some of our best content. Thank you all and to our readers! OSINT ROCKS! #CDM #CDMG #OSINT #CYBERSECURITY #INFOSEC #BEST #PRACTICES #TIPS #TECHNIQUES

Cyber Defense eMagazine February Edition for 2024 #CDM #CYBERDEFENSEMAG @CyberDefenseMag by @Miliefsky a world-renowned cyber security expert and the Publisher of Cyber Defense Magazine as part of the Cyber Defense Media Group as well as Yan Ross, Editor-in-Chief and many more writers, partners and supporters who make this an awesome publication! 155 page February Edition fully packed with some of our best content. Thank you all and to our readers! OSINT ROCKS! #CDM #CDMG #OSINT #CYBERSECURITY #INFOSEC #BEST #PRACTICES #TIPS #TECHNIQUES

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

<strong>The</strong>re are multiple tools that will let you automate the scanning process, such as ggshield, which you can<br />

use in a pre-commit Git hook. Aside from just finding the secret, any good scanner will also provide<br />

in<strong>for</strong>mation such as type, number of occurrences, and if the secret is valid.<br />

*PyPI secrets sprawl is solvable<br />

Unique secrets added over time<br />

<strong>The</strong> research ultimately reveals the disturbing trend that the number of secrets being added to PyPI is<br />

growing steadily over time. In the last year alone, the research shows over 1,000 unique secrets have<br />

been added via new projects and commits on PyPI. While this might sound discouraging, this is a<br />

challenge we believe can be addressed through raising awareness, education and ever-improving<br />

developer tooling. We hope the findings of this report help you with raising the issue within your<br />

organizations and projects.<br />

<strong>The</strong> Python community continues to innovate and work to make all developers' lives better. Donating<br />

useful code back to the community is something we hope to see more people do, but we want to see it<br />

done safely. GitGuardian can help you work safely and keep your projects free of secrets. <strong>The</strong><br />

GitGuardian Secrets Detection plat<strong>for</strong>m is free <strong>for</strong> open source contributions and teams with 25 or fewer<br />

developers. We want to make sure your shared code contains only the intended logic and not your valid<br />

secrets.<br />

> Hear directly from Tom Forbes about his PyPI research in his appearance on <strong>The</strong> Security Repo<br />

Podcast.<br />

EMBED: https://www.youtube.com/watch?v=AhH0aGFPoO4<br />

<strong>Cyber</strong> <strong>Defense</strong> <strong>eMagazine</strong> – <strong>February</strong> <strong>2024</strong> <strong>Edition</strong> 73<br />

Copyright © <strong>2024</strong>, <strong>Cyber</strong> <strong>Defense</strong> Magazine. All rights reserved worldwide.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!