CISA contractor apparently leaked 'highly sensitive' government AWS keys on Github

https://cdn.mos.cms.futurecdn.net/yga3LG7XiRJcCatEoQaGuG-2560-80.png
  • A public GitHub repository called “Private‑CISA” exposed highly sensitive internal credentials and systems used by the US Cybersecurity and Infrastructure Security Agency
  • Security researchers confirmed the authenticity of the leak, describing it as one of the worst government data exposures they had ever seen
  • The repository, maintained by contractor Nightwing, was eventually locked down, with CISA pledging safeguards to prevent future incidents

Researchers have revealed details on what they called, “one of the most egregious government data leaks in recent history” involving some potentially incredibly sensitive US government information.

Security researcher Guillaume Valadon reached out toKrebsOnSecurity to help contact a person in charge of a public GitHub repository.

This person, who was not responding to messages, was operating a GitHub repository called “Private-CISA” which contained, among other things:

  • AWS GovCloud administrative credentials for three accounts
  • AWS access keys
  • AWS tokens (including “importantAWStokens” file)
  • Plaintext usernames and passwordsfor internal...

Copyright of this story solely belongs to techradar.com. To see the full text click HERE

Read more

https://techcrunch.com/wp-content/uploads/2026/06/Patronus-team.jpg?resize=1200,800

Patronus AI, which builds simulated digital environments for evaluating AI agents, raised a $50M Series B led by Greenfield, bringing its total funding to $70M

Sponsor Posts Fast, affordable law for startups — Soxton automates startup legal so founders can move faster and sleep better. We handle incorporation, advisor, employment and commercial contracts. Join the waitlist for early access! Stop vibe coding analytics — Equals AI turns questions about your business into auditable spreadsheet models and dashboards.