
CISA Releases Postmortem on Data Leak Involving Exposed Internal Credentials on GitHub
cybersecuritydata_breachgovernmentGitHubcredentials_leakCISAAWS_GovCloudKrebsOnSecurityincident_responsesecurity_lessons
The Cybersecurity and Infrastructure Security Agency (CISA) released a postmortem on a data leak involving a contractor who exposed dozens of internal CISA credentials, including AWS GovCloud keys, in a public GitHub repository for nearly six months. The leak was discovered and reported by KrebsOnSecurity before CISA was notified. The incident highlighted gaps in the agency’s initial response, offering lessons for security teams. No specific dates, CVE IDs, or additional technical details about the exposed credentials were provided. The breach involved unauthorized access to sensitive infrastructure credentials.