Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

YouTube

Large-Scale Exposure of Orphaned Commits on Major Git Platforms

nullcon via YouTube

Overview

Coursera Flash Sale
40% Off Coursera Plus for 3 Months!
Grab it
Explore a critical security vulnerability in modern version control systems through this 27-minute conference talk that reveals how dangling commits across GitHub, GitLab, and Bitbucket expose sensitive information at an alarming scale. Discover systematic techniques for identifying and enumerating orphaned commits that persist in repository history even after developers believe they've removed sensitive data through resets, modifications, or deletions. Learn about the engineering methodology behind large-scale analysis of Git platforms that uncovered widespread exposure of API keys, credentials, and proprietary configurations hidden within these repository remnants. Understand the challenges encountered during at-scale vulnerability research and gain insights into the technical approaches used to systematically extract sensitive information from dangling commits across major development platforms. Master practical solutions and repository hygiene best practices to prevent such exposures, ensuring comprehensive security coverage for both visible code and hidden repository remnants that pose silent but significant risks to organizational security.

Syllabus

Nullcon Goa 2025 | Large-Scale Exposure Of Orphaned Commits On Major Git Platforms by Kumar Ashwin

Taught by

nullcon

Reviews

Start your review of Large-Scale Exposure of Orphaned Commits on Major Git Platforms

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.