communism@lemmy.ml to Open Source@lemmy.ml · 3 个月前Anyone can Access Deleted and Private Repository Data on GitHubtrufflesecurity.comexternal-linkmessage-square41fedilinkarrow-up1236arrow-down111cross-posted to: technology@lemmy.worldcybersecurity@sh.itjust.workshackernews@lemmy.smeargle.fans
arrow-up1225arrow-down1external-linkAnyone can Access Deleted and Private Repository Data on GitHubtrufflesecurity.comcommunism@lemmy.ml to Open Source@lemmy.ml · 3 个月前message-square41fedilinkcross-posted to: technology@lemmy.worldcybersecurity@sh.itjust.workshackernews@lemmy.smeargle.fans
minus-squareShadow@lemmy.calinkfedilinkarrow-up12arrow-down3·3 个月前Yeah, pretty much everyone agrees that once something goes to git it lasts forever. The fact they call out that secret keys must be rotated if committed, makes me think they thought just deleting a commit was enough 🤦
Yeah, pretty much everyone agrees that once something goes to git it lasts forever.
The fact they call out that secret keys must be rotated if committed, makes me think they thought just deleting a commit was enough 🤦