Public SSH keys can leak your private infrastructureThis article describes a minor security flaw in the SSH authentication protocol that can lead to unexpected private infrastructure disclosure. It also provides a PoC written in Python.#rushter#EN#2019#SSH#keys#github#leak·rushter.com·Jan 30, 2024Public SSH keys can leak your private infrastructure
Malicious NPM Packages Exfiltrate Hundreds of Developer SSH Keys via GitHubDid you download Warbeast2000 or Kodiak2k from npm? If so, your SSH keys might be compromised! These packages steal keys & upload them to GitHub.#thehackernews#EN#2024#NPM#Packages#Malicious#SSH#Keys#warbeast2000#kodiak2k·thehackernews.com·Jan 28, 2024Malicious NPM Packages Exfiltrate Hundreds of Developer SSH Keys via GitHub