Company
Date Published
Author
Mackenzie Jackson
Word count
735
Language
English
Hacker News points
None

Summary

The Lapsus$ hacking group has published nearly 200GB of source code from Samsung and Nvidia's latest DLSS technology, highlighting a growing trend of internal source code leaks by adversaries. GitGuardian's analysis of the leaked Samsung source code revealed 6,695 sensitive secrets, with 90% relating to Samsung's internal services and infrastructure but the remaining 10% potentially exposing external systems like AWS, GitHub, and Google to unauthorized access. This issue underscores the risks associated with the widespread accessibility of source code within large organizations, making it an appealing target for attackers. The Lapsus$ group, active on Telegram, even encourages insiders to provide access to confidential repositories, indicating that more leaks could be expected in the future. This situation raises significant concerns about the security of internal source code, which often contains sensitive data and remains vulnerable due to its distribution across various platforms and devices.