AI’s Dirty Little Secret: $400B in Leaked Keys and Credentials!

Wiz, the cloud security giant, uncovered a treasure trove of leaked secrets from top AI companies on GitHub. Their deep dives revealed that 65% of these tech titans had a case of “oopsies” with exposed API keys, tokens, and more. With $400B at stake, it turns out even AI wizards can have a security slip!

Pro Dashboard

Hot Take:

It’s 2023, and AI companies still can’t keep secrets! The irony is so thick you could cut it with a digital knife. Who knew that the world’s smartest algorithms could be so loose-lipped? One could say these companies are well on their way to creating the most advanced AI that’s equally adept at leaking secrets as it is at crunching numbers. Talk about multitasking!

Key Points:

  • Wiz conducted a comprehensive analysis of GitHub repositories for top AI companies, finding widespread secret leaks.
  • 65% of the AI firms studied had leaked secrets, including API keys and credentials.
  • Some companies responded quickly to disclosures, while others ignored them or had no official disclosure channel.
  • Wiz found that effective secrets management varied widely, with some companies showing zero leaks despite large repository numbers.
  • Recommendations included mandatory secret scanning and establishing clear disclosure channels.

Membership Required

 You must be a member to access this content.

View Membership Levels
Already a member? Log in here
The Nimble Nerd
Confessional Booth of Our Digital Sins

Okay, deep breath, let's get this over with. In the grand act of digital self-sabotage, we've littered this site with cookies. Yep, we did that. Why? So your highness can have a 'premium' experience or whatever. These traitorous cookies hide in your browser, eagerly waiting to welcome you back like a guilty dog that's just chewed your favorite shoe. And, if that's not enough, they also tattle on which parts of our sad little corner of the web you obsess over. Feels dirty, doesn't it?