Navigation
Recherche
|
GitHub saved plaintext passwords of npm users in log files, post mortem reveals
vendredi 27 mai 2022, 14:15 , par TheRegister
Unrelated to the OAuth token attack, but still troubling as org reveals details of around 100,000 users were grabbed by the baddies
GitHub has revealed it stored a 'number of plaintext user credentials for the npm registry' in internal logs following the integration of the JavaScript package registry into GitHub's logging systems.…
https://go.theregister.com/feed/www.theregister.com/2022/05/27/github_publishes_a_post_mortem/
|
56 sources (32 en français)
Date Actuelle
lun. 6 mai - 18:34 CEST
|