GitGuardian
PulseAugur coverage of GitGuardian — every cluster mentioning GitGuardian across labs, papers, and developer communities, ranked by signal.
5 day(s) with sentiment data
-
AI agents leak secrets naturally, but scanners catch them: study
A recent test investigated whether AI agents leak sensitive information unintentionally and if security scanners can detect such leaks. The study found that while natural leakage is a real concern, its occurrence varies…
-
AI accelerates exploit discovery, intensifying credential security challenges
A new report from the security community highlights how advanced AI models like Anthropic's Claude Mythos Preview can rapidly discover and exploit vulnerabilities, compressing exploit development time to mere hours. Thi…
-
AI assistants double secret leak rate; environment blamed
GitGuardian has identified 28.6 million leaked secrets, with developers using AI assistants contributing to this at double the usual rate. The issue is attributed to the development environment rather than the AI models…
-
New tool ThumbGate prevents AI coding agents from leaking secrets
An AI developer has created a tool called ThumbGate to prevent AI coding agents like Claude Code, Cursor, and Copilot Workspace from accidentally leaking sensitive information. The tool acts as a pre-execution gate, ana…
-
Free AI API keys: Official tiers vs. leaked secrets
Developers seeking free AI APIs for prototypes face a critical distinction between official free tiers and leaked API keys. While both may function initially, official tiers offer documented limits, licenses, and terms …
-
AI models struggle to fix code leaks; narrow prompts improve success
A recent experiment tested the effectiveness of using AI models to fix code leaks, such as API keys. The study found that the success rate varied significantly depending on the AI model and the prompting method used. So…
-
AI Infrastructure Security Threatened by Credential Exploits
The security of AI infrastructure is increasingly threatened by compromised credentials, a vulnerability that traditional security measures are ill-equipped to handle. Recent incidents involving LiteLLM and Anthropic's …
-
Prompt injection defense shifts to tool-call boundary
Prompt injection remains a critical vulnerability in AI models, with recent data showing a significant increase in exposed secrets, particularly in AI-assisted code commits. Experts argue that defenses at the model laye…
-
AI speeds up software projects but not company building
AI has significantly accelerated the project stage of software development, enabling rapid prototyping and the creation of tools like CRMs in very short timeframes. However, this speed does not translate to the equally …
-
AI coding assistants get real-time policy guardrails
Two articles discuss the implementation and security of Model Context Protocol (MCP) systems, which provide LLMs with real-time organizational context. The first article details an open-source "Architect's Guardrail" de…
-
AI agents spark identity crisis, forcing rethink of auth and access
At the BSides312 conference in Chicago, GitGuardian's mcdwayne discussed the identity challenges posed by AI agents. The talk explored how autonomous systems necessitate a reevaluation of authentication, delegation, and…