← Back to timeline

Lessons Learned from CISA's Recent GitHub Leak

SourceKrebs on Security
StatusNews report
AddedJuly 13, 2026
What to do if you were affected
Worried your data is exposed?Take back control of your personal data with Literal.
Protect your data
Details
The Cybersecurity and Infrastructure Security Agency (CISA) has issued a postmortem on a data leak in which a contractor published dozens of internal CISA credentials -- including AWS Govcloud keys -- in a public GitHub repository for almost six months before being notified by KrebsOnSecurity. Experts say the gaps identified in the agency's initial response provide important lessons that all security teams should absorb.
Frequently asked questions

What is the Lessons Learned from CISA's Recent GitHub Leak incident?

The Cybersecurity and Infrastructure Security Agency (CISA) has issued a postmortem on a data leak in which a contractor published dozens of internal CISA credentials -- including AWS Govcloud keys -- in a public GitHub repository for almost six months before...

When did the incident happen?

This incident was disclosed on July 13, 2026.

What should I do if I was affected?

If you have an account with this organization, change your password and enable two-factor authentication. Be cautious of phishing emails, calls, or texts that reference this incident.

Read the full report on Krebs on Security ↗
Related breaches