In stunning display of stupid, secret CISA credentials found in public GitHub repo
2026-05-19T20:51:51Z•189e57ae83da9e38921b6bbbda0f16d6f0e36eba780c136ab2194bf3b2caf8ae
CISAGitHubai-assisted-bug-findingaspnetbitlockercanvascopyfailcredential-exposuredaemon-toolslinuxmozilla-mythosopen-source-compromiseplaintext-passwordspost-quantum-ransomwaressh-keyssupply-chainubuntuwindows-11zero-day
What happened
Feed of Ars Technica security stories (Apr–May 2026) describing multiple high-impact incidents: secret CISA credentials (SSH keys, plaintext passwords) exposed in a public GitHub repo since Nov 2025; a Windows 11 BitLocker zero‑day that reportedly defeats default protections; several severe Linux vulnerabilities including the multi-tenant “CopyFail” issue; a month‑long supply‑chain backdoor in Daemon Tools; an open‑source package (element-data) exfiltrating credentials; widespread disruptions to Canvas and Ubuntu infrastructure; an emergency Microsoft update for an ASP.NET auth issue on macOS/
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- arstechnica_security
- Record identifier
- 189e57ae83da9e38921b6bbbda0f16d6f0e36eba780c136ab2194bf3b2caf8ae
- Enrichment time
- 2026-05-19T20:51:51Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.