Security researcher discovers 17,000 secrets in public GitLab repositories


  • Researcher found 17,000 secrets exposed in GitLab Cloud repositories
  • Credential leaks risk hijacking, cryptomining, and further compromising infrastructure.
  • Marshall automated scans yielded $9,000 in bounties; some projects remain exposed

A security researcher has discovered thousands of secrets in public GitLab Cloud repositories, demonstrating how software developers inadvertently expose their own projects to cyberattacks.

GitLab Cloud is the hosted version of GitLab, a platform that developers use to store code, track issues, run CI/CD pipelines, and collaborate on software projects.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top