Jan. 5, 2023, 6:58 p.m. | Ivanwallarm

Security Boulevard securityboulevard.com

On December 29, 2022, Slack was alerted to suspicious activity on their GitHub account. Upon investigation, the company discovered that a limited number of employee tokens had been stolen and misused to gain access to an externally hosted repository. The threat actor had also downloaded private code repositories on December 27, but neither Slack’s primary [...]


The post Slack GitHub Account Hacked via Stolen Employee API Token appeared first on Wallarm.


The post Slack GitHub Account Hacked via Stolen …

access account actor api api leak api security cloud security code code repositories data breach december devops different attack types employee github hacked incident investigation private repositories repository researcher corner security-incidents slack stolen the company threat threat actor token token leak tokens wallarm web application security

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Security Officer Hospital - Major Hospital Account - Full-Time - Healthcare Security

@ Allied Universal | Anaheim, CA, United States

Product Security Lead

@ Lely | Maassluis, Netherlands

Summer Associate, IT Information Security (Temporary)

@ Vir Biotechnology, Inc. | San Francisco, California, United States

Director, Governance, Risk and Compliance - Corporate

@ Ryan Specialty | Chicago, IL, US, 60606

Cybersecurity Governance, Risk, and Compliance Engineer

@ Emerson | Shakopee, MN, United States