TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

An internal code repo used by New York State’s IT office was exposed online

5 pointsby marccalmost 4 years ago

1 comment

marccalmost 4 years ago
&quot;A code repository used by the New York state government’s IT department was left exposed on the internet, allowing anyone to access the projects inside, some of which contained secret keys and passwords associated with state government systems.&quot;<p>It&#x27;s incredible that folks still think that network security and access is sufficient. There are many tools available to manage secrets that don&#x27;t involve checking them in (assuming in plain text here) to a git repo. It doesn&#x27;t matter where the repo is hosted, just don&#x27;t commit secrets.