2lambda123 / gchq-Bailo

Apache License 2.0
0 stars 0 forks source link

Fix code scanning alert - Hard-coded credentials #67

Open 2lambda123 opened 1 month ago

2lambda123 commented 1 month ago

Tracking issue for:

secure-code-warrior-for-github[bot] commented 1 month ago

Micro-Learning Topic: Hard-coded credential (Detected by phrase)

Matched on "Hard-coded credential"

What is this? (2min video)

This vulnerability occurs when the keys used for performing the encryption are not secured properly. This could be because the keys are hard coded in the app and remain same throughout the application life cycle and for each version installed on different devices. The use of a hard coded cryptographic key tremendously increases the probability that encrypted data may be recovered.

Try a challenge in Secure Code Warrior

git-greetings[bot] commented 1 month ago

Thanks @2lambda123 for opening this issue!

For COLLABORATOR only :

gitginie[bot] commented 1 month ago

@2lambda123! Thank you for your contribution to this repository! We appreciate your effort in opening issue. Happy coding!

git-greetings[bot] commented 1 month ago
Issues Details of @2lambda123 in gchq-Bailo : OPEN CLOSED TOTAL
11 0 11
codeautopilot[bot] commented 1 month ago

Your organization has reached the subscribed usage limit. You can upgrade your account by purchasing a subscription at Stripe payment link