Code Formatting Tools Expose Sensitive Credentials

Code Formatting Tools Expose Sensitive Credentials

First seen 2 Dec 2025, 18:33 UTC BleepingcomputerThecyberexpressCsoonline 84% similarity 15.3

Article Content

Browse articles
ThreatCluster

Researchers from watchTowr discovered that over 80,000 sensitive credentials, including authentication keys and API tokens, were exposed through JSON snippets submitted to the JSONFormatter and CodeBeautify tools. This data, totaling more than 5GB, was accessible via a feature called Recent Links, which allows anyone to view past user submissions. Affected organizations include banks, government entities, and tech companies.

ThreatCluster AI How this analysis works

Community

Browse all →