Slacker News Slacker News logo featuring a lazy sloth with a folded newspaper hat
  • top
  • new
  • show
  • ask
  • jobs
Library
← Back to context

Comment by darnthenuggets

4 days ago

Both of these attacks have used trufflehog. Is there an out of the box way to block that executable by name or signature?

1 comment

darnthenuggets

Reply

jamietanna  4 days ago

I'd say an alternative question is "how can we stop storing secrets in source control" so then tools like Trufflehog can't find them :)

Slacker News

Product

  • API Reference
  • Hacker News RSS
  • Source on GitHub

Community

  • Support Ukraine
  • Equal Justice Initiative
  • GiveWell Charities