Home Depot reportedly left internal systems at risk for over a year

Home Depot reportedly left internal systems at risk for over a year


  • Home Depot exposed a GitHub token for a year, granting access to critical internal systems
  • Researcher warnings were ignored until media intervened, after which the token was revoked
  • Similar leaks across GitHub/GitLab show widespread risks from hardcoded secrets and misconfigured repos

Home Depot kept access to its internal systems open for more than a year, to anyone who knew where to look, experts have warned.

Security researcher Ben Zimmermann recently found a published GitHub access token which belonged to a Home Depot employee.


link

Leave a Reply

Your email address will not be published. Required fields are marked *