www.justice.gov
GitHub Leak Exposes CISA and DHS Credentials, Raises Security Concerns
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
A GitHub repository linked to Nightwing, a contractor for CISA, leaked credentials for AWS GovCloud accounts and internal systems of CISA and DHS. The exposure, attributed to a significant operational security failure, has prompted urgent requests for briefings from congressional leaders. Nightwing, previously part of Raytheon, has a history of cybersecurity compliance issues, including a recent $8.4 million settlement related to the False Claims Act. The incident raises questions about contractor oversight and the security of government software development processes. CISA's credibility is at stake as it advocates for stronger cybersecurity practices across federal and state agencies. The leak occurred amidst internal disruptions at CISA, which has seen a workforce reduction during the Trump administration.
Key Points: • A GitHub leak exposed sensitive credentials for CISA and DHS systems. • Nightwing, the contractor involved, has a history of cybersecurity compliance failures. • Congressional leaders have requested urgent briefings regarding the incident.