Advice from a Researcher: Protecting your Dev Environments

We’re starting a new series of community blog posts on the Bugcrowd blog and this week’s is our “Advice from a Researcher” series. We talked to @maK0 and shared some of his advice for development teams:

I hope to shine light on one of the more common security problems that I’ve seen crop up repeatedly: insecure dev environments. Issues tend to crop up out of pressure on ops, devops and developers to code quickly and get stuff into production. Deadlines, release dates and quickly growing services can all contribute to the mess in an organization’s development environments which leads to easy targets for hackers.

Read more on the Bugcrowd blog.

You should also consider to make sure, that your repositories are safe.

Look at our newest research on internetwache.org:
https://en.internetwache.org/dont-publicly-expose-git-or-how-we-downloaded-your-websites-sourcecode-an-analysis-of-alexas-1m-28-07-2015/

or simply check Github :wink:

Cheers,
Tim (Team of Internetwache.org)