Bleepingcomputer
Code Formatting Tools Expose Sensitive Credentials
First seen 2 Dec 2025, 18:33 UTC
•

•84% similarity
•15.3
Share:
Export
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
Browse articles
Researchers from watchTowr discovered that over 80,000 sensitive credentials, including authentication keys and API tokens, were exposed through JSON snippets submitted to the JSONFormatter and CodeBeautify tools. This data, totaling more than 5GB, was accessible via a feature called Recent Links, which allows anyone to view past user submissions. Affected organizations include banks, government entities, and tech companies.
ThreatCluster AI
How this analysis works