Damus
BrianKrebs profile picture
BrianKrebs
@BrianKrebs
New, by me: CISA Admin Leaked AWS GovCloud Keys on GitHub

Until this past weekend, a contractor for the Cybersecurity & Infrastructure Security Agency (CISA) maintained a public GitHub repository that exposed credentials to several highly privileged AWS GovCloud accounts and a large number of internal CISA systems. Security experts said the public archive included files detailing how CISA builds, tests and deploys software internally, and that it represents one of the most egregious government data leaks in recent history.

https://krebsonsecurity.com/2026/05/cisa-admin-leaked-aws-govcloud-keys-on-github/

2
BrianKrebs · 2w
It's possible this set of instructions by the CISA contractor might have caused all the trouble: https://media.infosec.exchange/infosec.exchange/media_attachments/files/116/597/783/004/252/348/original/75061473e8ec9628.png
GrumpyDad πŸ‡ΊπŸ‡¦πŸ‡΅πŸ‡Έ · 2w
nostr:nprofile1qy2hwumn8ghj7un9d3shjtnyd968gmewwp6kyqpqwf44gvmu4g6x0gwwjgrnlw0f8dxmvx7h929k057wwv8hwa8clq6se2gu7x There's no way this is not intentional.