The State of Secrets Sprawl 2026: 9 Takeaways for CISOs
Briefly

The State of Secrets Sprawl 2026: 9 Takeaways for CISOs
"GitGuardian detected 1,275,105 leaked secrets tied to AI services in 2025, up 81% from 2024. Eight of the ten fastest-growing categories of leaked secrets were AI-related, indicating a significant shift in how credentials are exposed."
"Internal repositories are six times more likely to leak than public ones, with 32.2% of internal repos containing at least one hardcoded secret, compared to just 5.6% of public repos."
"Since 2021, leaked secrets have grown 152%, while GitHub's public developer base expanded 98%. The rapid increase in developers and AI-assisted code generation is leading to more credentials in circulation."
In 2025, GitGuardian's report revealed a significant rise in hardcoded secrets, totaling 29 million, a 34% increase from 2024. Key trends include the impact of AI on credential leaks, with AI services responsible for 81% more leaks. Internal repositories pose a greater risk, leaking secrets six times more than public ones. The growth of leaked secrets outpaces the developer population, indicating a need for improved security strategies. Remediation remains a critical challenge for organizations facing this escalating issue.
Read at The Hacker News
Unable to calculate read time
[
|
]