BSidesSF 2018 has ended
Back To Schedule
Sunday, April 15 • 4:50pm - 5:20pm
Your Secrets are Showing! -- How to find if your developers are leaking secrets?

Sign up or log in to save this to your schedule, view media, leave feedback and see who's attending!

Feedback form is now closed.
This talk will zoom in to the cache of goodies which developers leave lying around that an attacker could leverage access valuable information and / or to pivot through a target environment. It will also highlight some of the tools available to developers and InfoSec professionals to find and prevent these sorts of information leakages.

Every day, developers interact with a variety of source code repositories and environments, often both inside their corporate firewalls and outside on public hosting platforms such as GitHub.com and Amazon AWS. These source code repositories can provide a wealth of information about a target environment, in addition to being of potential value all on their own.

Are you able to find this information in your environment? Do you know how to help your developers prevent these leakages in the first place? Remember "prevention is ideal, but detection is a must!"

Prepared by LLNL under Contract DE-AC52-07NA27344.

avatar for Ian Lee

Ian Lee

Computer Engineer, Lawrence Livermore National Laboratory
Ian Lee is a Computer Engineer working in the High Performance Computing (HPC) facility at Lawrence Livermore National Laboratory (LLNL), which is home to some of the largest supercomputers on the planet. There he has created a role performing cyber assessment, penetration testing... Read More →

Sunday April 15, 2018 4:50pm - 5:20pm PDT
City View - Presidio