CISA Credentials Leak on GitHub Raises Security Concerns
A significant security breach involving the Cybersecurity and Infrastructure Security Agency (CISA) has been reported, following the discovery of exposed credentials on GitHub. The credentials, which were for privileged AWS GovCloud accounts and internal CISA systems, were found in a public repository named 'Private-CISA', apparently maintained by a contractor. This incident, first reported by Krebs on Security, has been described by a security researcher as one of the worst leaks he has encountered. The leak has raised alarms among security professionals due to the potential for misuse by malicious parties, including state actors who could exploit the data to gain persistent access to government systems.