EMERALDWHALE exploits vulnerable Git configuration files
Sysdig’s Threat Research Team (TRT) has uncovered a global operation known as EMERALDWHALE, which has stolen over 15,000 cloud service credentials by exploiting exposed Git configuration files.
EMERALDWHALE utilised multiple private tools to exploit several misconfigured web services, resulting in the theft of credentials from more than 10,000 private repositories.
Though the operation's primary targets appeared to be cloud service and email providers, the ultimate aim...
Recent Comments