'Secrets Sprawl' Haunts Software Supply Chain Security
A cybersecurity startup is warning of a major, unattended weak link in the software supply chain: the vexing problem of secrets sprawl -- API keys, usernames and passwords, and security certificates -- exposing weaknesses in the software supply chain.
France General Docker Hub Gitguardian Raises Create Code Security Codecov Bash Uploader Dev Tool Compromised Supply Chain
Source: securityweek.com