Tech

This worrying Git flaw could lead to users leaking credentials

Share
Share


  • Security researcher finds related attacks and dubbed them Clone2Leak
  • This allowed threat actors to leak credentials through Git’s credential helper
  • Patches are already available, so update now

A number of flaws was recently found in distributed version control system Git’s credential helper which allowed malicious actors to exfiltrate login credentials from different projects. It was responsibly disclosed to the developers and shut down.

Git’s credential helper is a feature that securely manages credentials (usernames and passwords, or personal access tokens) required to authenticate with remote repositories. It simplifies authentication by caching or storing credentials so users don’t need to repeatedly enter them for every Git operation.

Share

Leave a comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Related Articles
Researchers develop AI motion ‘translation’ model for controlling different kinds of robots
Tech

Researchers develop AI motion ‘translation’ model for controlling different kinds of robots

MotionGlot is a model that can generate motion trajectories that obey user...

Amazon’s slightly terrifying new warehouse robot comes with “a sense of touch”
Tech

Amazon’s slightly terrifying new warehouse robot comes with “a sense of touch”

Amazon’s latest warehouse robot can feel items that it handles Vulcan has...

How temperature increase drives energy loss in fuel cells
Tech

How temperature increase drives energy loss in fuel cells

Quantum mechanics simulations reveal the impact of temperature on energy conversion efficiency...

This soft robot ‘thinks’ with its legs
Tech

This soft robot ‘thinks’ with its legs

The authors with their robot. From left to right: Alberto Comoretto, Harmannus...