Home Depot Allegedly Left Internal Systems at Risk for More Than a Year



  • Home Depot exposed a GitHub token for a year, granting access to critical internal systems
  • The researchers’ warnings were ignored until the media intervened, after which the token was revoked.
  • Similar leaks on GitHub/GitLab show widespread risks due to hard-coded secrets and misconfigured repositories.

Home Depot kept access to its internal systems open for more than a year to anyone who knew where to look, experts warned.

Security researcher Ben Zimmermann recently found a published GitHub access token that belonged to a Home Depot employee.



Leave a Comment

Your email address will not be published. Required fields are marked *