Close Menu
Ztoog
    What's Hot
    Science

    JWST images shows Supernova 1987A in a whole new light

    Crypto

    North Korean hackers linked to Atomic Wallet crypto hack

    AI

    Robot armies duke it out in Battlecode’s epic on-screen battles | Ztoog

    Important Pages:
    • About Us
    • Contact us
    • Privacy Policy
    • Terms & Conditions
    Facebook X (Twitter) Instagram Pinterest
    Facebook X (Twitter) Instagram Pinterest
    Ztoog
    • Home
    • The Future

      Can work-life balance tracking improve well-being?

      Any wall can be turned into a camera to see around corners

      JD Vance and President Trump’s Sons Hype Bitcoin at Las Vegas Conference

      AI may already be shrinking entry-level jobs in tech, new research suggests

      Today’s NYT Strands Hints, Answer and Help for May 26 #449

    • Technology

      Elon Musk tries to stick to spaceships

      A Replit employee details a critical security flaw in web apps created using AI-powered app builder Lovable that exposes API keys and personal info of app users (Reed Albergotti/Semafor)

      Gemini in Google Drive can now help you skip watching that painfully long Zoom meeting

      Apple iPhone exports from China to the US fall 76% as India output surges

      Today’s NYT Wordle Hints, Answer and Help for May 26, #1437

    • Gadgets

      Future-proof your career by mastering AI skills for just $20

      8 Best Vegan Meal Delivery Services and Kits (2025), Tested and Reviewed

      Google Home is getting deeper Gemini integration and a new widget

      Google Announces AI Ultra Subscription Plan With Premium Features

      Google shows off Android XR-based glasses, announces Warby Parker team-up

    • Mobile

      Deals: the Galaxy S25 series comes with a free tablet, Google Pixels heavily discounted

      Microsoft is done being subtle – this new tool screams “upgrade now”

      Wallpaper Wednesday: Android wallpapers 2025-05-28

      Google can make smart glasses accessible with Warby Parker, Gentle Monster deals

      vivo T4 Ultra specs leak

    • Science

      June skygazing: A strawberry moon, the summer solstice… and Asteroid Day!

      Analysts Say Trump Trade Wars Would Harm the Entire US Energy Sector, From Oil to Solar

      Do we have free will? Quantum experiments may soon reveal the answer

      Was Planet Nine exiled from the solar system as a baby?

      How farmers can help rescue water-loving birds

    • AI

      Fueling seamless AI at scale

      Rationale engineering generates a compact new tool for gene therapy | Ztoog

      The AI Hype Index: College students are hooked on ChatGPT

      Learning how to predict rare kinds of failures | Ztoog

      Anthropic’s new hybrid AI model can work on tasks autonomously for hours at a time

    • Crypto

      Bitcoin Maxi Isn’t Buying Hype Around New Crypto Holding Firms

      GameStop bought $500 million of bitcoin

      CoinW Teams Up with Superteam Europe to Conclude Solana Hackathon and Accelerate Web3 Innovation in Europe

      Ethereum Net Flows Turn Negative As Bulls Push For $3,500

      Bitcoin’s Power Compared To Nuclear Reactor By Brazilian Business Leader

    Ztoog
    Home » Mintlify says customer GitHub tokens exposed in data breach
    Technology

    Mintlify says customer GitHub tokens exposed in data breach

    Facebook Twitter Pinterest WhatsApp
    Mintlify says customer GitHub tokens exposed in data breach
    Share
    Facebook Twitter LinkedIn Pinterest WhatsApp

    Documentation startup Mintlify says dozens of consumers had GitHub tokens exposed in a data breach in the beginning of the month and publicly disclosed final week.

    Mintlify helps builders create documentation for his or her software program and supply code by requesting entry and tapping instantly into the customer’s GitHub supply code repositories. Mintlify counts fintech, database and AI startups as prospects.

    In a weblog put up Monday, Mintlify blamed its March 1 incident on a vulnerability in its personal techniques, however mentioned 91 of its prospects had their GitHub tokens compromised in consequence.

    These non-public tokens permit GitHub customers to share their account entry with third events apps, together with corporations like Mintlify. If these tokens are stolen, an attacker may receive the identical degree of entry to an individual’s supply code because the token permits.

    “The users have been notified, and we’re working with GitHub to identify whether the tokens were used to access private repositories,” Mintlify co-founder Han Wang wrote in a weblog put up.

    News of the incident turned public final week when some customers on Reddit and Hacker News commented after getting an e mail from Mintlify on Friday concerning the incident, days after the corporate’s weblog put up initially instructed prospects that “no further action is required on your part.”

    In a put up discussing the breach on Hacker News, Wang mentioned a vulnerability in its techniques was leaking the corporate’s inner admin credentials to prospects. Those credentials may then be used to entry the corporate’s inner endpoints to entry different unspecified delicate person info, Wang mentioned.

    Wang mentioned that the corporate was in the method of deprecating using non-public tokens “to prevent an incident like this from ever happening again.”

    While the weblog put up describes the one that found the vulnerability as a bug bounty reporter, the corporate’s co-founder Wang described the occasions as malicious.

    “The targets of this attack were GitHub tokens of our users,” Wang instructed Ztoog by e mail.

    “Investigations with one impacted customer revealed that the leaked token was likely not used by the attacker. We are currently working with GitHub and our customers to uncover if any of the other tokens were used by the attacker,” Wang mentioned.

    Share. Facebook Twitter Pinterest LinkedIn WhatsApp

    Related Posts

    Technology

    Elon Musk tries to stick to spaceships

    Technology

    A Replit employee details a critical security flaw in web apps created using AI-powered app builder Lovable that exposes API keys and personal info of app users (Reed Albergotti/Semafor)

    Technology

    Gemini in Google Drive can now help you skip watching that painfully long Zoom meeting

    Technology

    Apple iPhone exports from China to the US fall 76% as India output surges

    Technology

    Today’s NYT Wordle Hints, Answer and Help for May 26, #1437

    Technology

    5 Skills Kids (and Adults) Need in an AI World – O’Reilly

    Technology

    How To Come Back After A Layoff

    Technology

    Are Democrats fumbling a golden opportunity?

    Leave A Reply Cancel Reply

    Follow Us
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    Top Posts
    Technology

    Elon Musk Changes Twitter’s Logo to an X

    Elon Musk has made some of the seen modifications to Twitter since he took management…

    Mobile

    Fairphone 5 earns a perfect repairability score from iFixit

    What it’s essential to knowThe Fairphone 5 is the most recent smartphone from Fairphone, a…

    Science

    Your Dog Is a Secret Weapon in the Fight Against Cancer

    Jellybean continues to defy expectations. The 5-year-old Labrador retriever combine jumps up and down from…

    The Future

    XCD Portable Air Purifier can improve your workspace or mobile environment

    This one is a bit totally different and raised my eyebrows after I was scanning…

    AI

    Meet DeepCache: A Simple and Effective Acceleration Algorithm for Dynamically Compressing Diffusion Models during Runtime

    Advancements in Artificial Intelligence (AI) and Deep Learning have introduced an ideal transformation in the…

    Our Picks
    Technology

    AI is making Meta's apps basically unusable, as the company adds Meta AI everywhere and viral user-generated AI images proliferate on Facebook and Instagram (Scott Nover/Fast Company)

    Crypto

    BlackRock Application For Spot Bitcoin ETF Undergoes Formal Review By SEC

    AI

    Google AI Unveils New Benchmarks in Video Analysis with Streaming Dense Captioning Model

    Categories
    • AI (1,494)
    • Crypto (1,754)
    • Gadgets (1,805)
    • Mobile (1,851)
    • Science (1,867)
    • Technology (1,803)
    • The Future (1,649)
    Most Popular
    Crypto

    SEC Outlines Deadline For Bitcoin Spot ETFs Approval Process, Here’s When

    Gadgets

    Alogic Fusion Pro Nexus Dock Review: Underrated Gadget You Need

    The Future

    Fate of Japan’s ‘Lunar Sniper’ in Doubt After Precision Landing Attempt

    Ztoog
    Facebook X (Twitter) Instagram Pinterest
    • Home
    • About Us
    • Contact us
    • Privacy Policy
    • Terms & Conditions
    © 2025 Ztoog.

    Type above and press Enter to search. Press Esc to cancel.