Finding Dangerous Hardcoded Secrets You Didn’t Know Existed in Your SDLC

Logo
Presented by

John Tierney, Field CTO at Legit Security & Liav Caspi, CTO and Co-Founder at Legit Security

About this talk

We have seen numerous headlines about the damage caused by hardcoding secrets in code. To combat this pervasive risk, security teams are turning to code scanners that look for secrets but soon realize that their visibility into all the places hardcoded secrets can be lurking is incomplete and outdated.  Join us as we discuss practical methods you can use to prevent software supply chain attacks and reduce the damage caused by hardcoded secrets. In this webinar, you will learn: - New techniques attackers are using to harvest your hardcoded secrets - Why accurate visibility into your development pipelines, beyond just source code, is paramount to the success of secret scanning programs - How to scale secret scanning initiatives to effectively support thousands of developers
Related topics:

More from this channel

Upcoming talks (0)
On-demand talks (10)
Subscribers (802)
Legit is a new way to manage your application security posture for security, product and compliance teams. With Legit, enterprises get a cleaner, easier way to manage and scale application security and address risks from code to cloud. Built for the modern SDLC, Legit tackles the toughest problems facing security teams, including GenAI usage, proliferation of secrets and an uncontrolled dev environment. Fast to implement and easy to use, Legit lets security teams protect their software factory from end to end, gives developers guardrails that let them do their best work safely, and proves the success of the security program. This new approach means teams can control risk across the business – and prove it.