Back to all threats

Years of JSONFormatter and CodeBeautify Leaks Expose Thousands of Passwords and API Keys

The Hacker News

Summary

Research by watchTowr Labs has revealed that sensitive organizations are inadvertently exposing thousands of passwords and API keys by using online code formatting tools like JSONformatter and CodeBeautify. This highlights a significant cybersecurity risk, particularly for sectors such as government and critical infrastructure, where the leakage of credentials could lead to severe breaches.

Impact

Not specified

In the Wild

Unknown

Timeline

Newly disclosed

Remediation

Organizations should avoid using online tools for sensitive data and implement strict data handling policies to prevent credential leakage.