Skip to main content
NEW: RSAC 2026 NHI Field Report. How Non-Human Identity became cybersecurity's central axis
Back to Blog
Tag

GitHub

7 posts
AI Agents Rerun the Service-Account Mistake: The Governance Gap Nobody Sized
Jul 19, 2026

AI Agents Rerun the Service-Account Mistake: The Governance Gap Nobody Sized

Every agent action is a credential action, and the industry is treating a governance shift as a provisioning task, exactly the way it did with service accounts.

Ben Kim
Ben Kim
Founder & CEO
The Identity You Can't See Is the One That Breaks You
Jul 15, 2026

The Identity You Can't See Is the One That Breaks You

The Korean GitHub token leaks and CISA's public-repo exposure were both filed as secrets leaks. What got out was not a file but a live identity. This piece argues that security leaders should treat API keys as identities and shift the defense from prevention rate to how fast you detect what has already leaked.

Ben Kim
Ben Kim
Founder & CEO
Expired Credentials That Still Work: The Zombie Key Problem (NHI Kill Chain #5)
Apr 14, 2026

Expired Credentials That Still Work: The Zombie Key Problem (NHI Kill Chain #5)

Secret scanning alert: Resolved. Credential status: Active. Deleting a secret from code is not the same as revoking it. Inside the Zombie Key kill chain.

Ben Kim
Ben Kim
Founder & CEO
When the Security Scanner Became the Weapon: A Cyber Kill Chain Analysis of the Trivy Supply Chain Attack
Mar 25, 2026

When the Security Scanner Became the Weapon: A Cyber Kill Chain Analysis of the Trivy Supply Chain Attack

Aqua Security's Trivy was compromised by TeamPCP, cascading into LiteLLM. A 7-phase Cyber Kill Chain and MITRE ATT&CK analysis of how incomplete credential rotation turned a single breach into a five-ecosystem catastrophe.

Ben Kim
Ben Kim
Founder & CEO
Nx Package Supply Chain Attack: How a GitHub Actions Vulnerability Caused a Global Crisis
Aug 28, 2025

Nx Package Supply Chain Attack: How a GitHub Actions Vulnerability Caused a Global Crisis

Attackers exploited a GitHub Actions vulnerability to compromise the Nx package. Analysis of the attack chain, who was affected, and how to detect similar threats.

Ben Kim
Ben Kim
Founder & CEO
How to Rotate sk_live_, vercel_token, sk-proj Exposed in .env
Apr 27, 2025

How to Rotate sk_live_, vercel_token, sk-proj Exposed in .env

We found live API keys in 0.45% of public Vercel deployments. AWS credentials, Stripe secrets, GitHub tokens. Here is what exposes them (NEXT_PUBLIC_ misuse is only one), how attackers chain a single key into full cloud compromise, and what to change in your setup this week.

Ben Kim
Ben Kim
Founder & CEO
Vigilant Ally: Helping Developers Secure GitHub Secrets
Nov 19, 2024

Vigilant Ally: Helping Developers Secure GitHub Secrets

Vigilant Ally is Cremit’s initiative to help developers find and close the secrets they have exposed on GitHub.

Ben Kim
Ben Kim
Founder & CEO
GitHub | Cremit Blog | Cremit