In stunning display of stupid, secret CISA credentials found in public GitHub repo

2026-05-19T20:51:51Z189e57ae83da9e38921b6bbbda0f16d6f0e36eba780c136ab2194bf3b2caf8ae
CISAGitHubai-assisted-bug-findingaspnetbitlockercanvascopyfailcredential-exposuredaemon-toolslinuxmozilla-mythosopen-source-compromiseplaintext-passwordspost-quantum-ransomwaressh-keyssupply-chainubuntuwindows-11zero-day

What happened

Feed of Ars Technica security stories (Apr–May 2026) describing multiple high-impact incidents: secret CISA credentials (SSH keys, plaintext passwords) exposed in a public GitHub repo since Nov 2025; a Windows 11 BitLocker zero‑day that reportedly defeats default protections; several severe Linux vulnerabilities including the multi-tenant “CopyFail” issue; a month‑long supply‑chain backdoor in Daemon Tools; an open‑source package (element-data) exfiltrating credentials; widespread disruptions to Canvas and Ubuntu infrastructure; an emergency Microsoft update for an ASP.NET auth issue on macOS/

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
arstechnica_security
Record identifier
189e57ae83da9e38921b6bbbda0f16d6f0e36eba780c136ab2194bf3b2caf8ae
Enrichment time
2026-05-19T20:51:51Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · In stunning display of stupid, secret CISA credentials found in public GitHub repo · Baitaphish