CISA Credential Leak Prompts Congressional Inquiry Over Security Concerns
The Cybersecurity and Infrastructure Security Agency (CISA) is under scrutiny following the exposure of sensitive credential data on GitHub. The leak, discovered by security firm GitGuardian, involved credentials for AWS GovCloud accounts and internal CISA systems. The repository, named 'Private-CISA', was reportedly maintained by a contractor. This incident has raised alarms among security professionals and lawmakers, with concerns about potential misuse by malicious actors. Mississippi Rep. Bennie Thompson and Delia Ramirez have requested a briefing from CISA's acting director, Nick Andersen, to understand the security lapse and its implications. Senator Maggie Hassan has also sought a classified briefing to assess the exposure's impact and CISA's response. CISA is investigating the incident and has stated that there is no indication of compromised sensitive data.