Security researcher reveals 17,000 secrets in public GitLab repositories


  • A researcher found 17,000 exposed secrets in GitLab Cloud repositories
  • Leaked credentials risk hijacking, cryptomining and deeper infrastructure compromise
  • Marshall automated scans, earned $9,000 in bounties; some projects remain exposed

A security researcher found thousands of secrets in public GitLab Cloud repositories, demonstrating how software developers are inadvertently putting their own projects at risk of cyberattacks.

GitLab Cloud is the hosted version of GitLab, a platform developers use to store code, track issues, run CI/CD pipelines, and collaborate on software projects.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top