The GitGuardian State of Secrets Sprawl 2025: Expert Panel

GitGuardian's 2025 State of Secrets Sprawl Report reveals that nearly 24 million new hardcoded secrets were exposed on public GitHub in 2024 alone–a staggering 25% increase from the previous year. Together with Chris Smith from Cyberark, our expert panel dives deep into the report's most concerning findings.

Securing Atlassian: miniOrange 2FA Demo at Jira Day 2025

Watch the live demo of our miniOrange 2FA app for Atlassian, presented by Harshit at Jira Day by Deviniti 2025! The session was well-received, with significant interest from attendees who explored our secure authentication solutions at the miniOrange booth and stayed back to see the app in action. In this session, we cover: Like & Subscribe for more Atlassian security insights!

Smart User Management: How to Save on Atlassian Licenses with Automation

Watch Aditya Reddy’s session from Jira Day by Deviniti 2025, where he explored how automating user management can help organizations optimize Atlassian license usage, reduce unnecessary costs, and enhance security. Learn how automation can streamline user provisioning and deprovisioning, enforce least-privilege access policies, and eliminate inactive accounts—ensuring that only the right users have access to the right resources at the right time.

Malware hiding in plain sight: Spying on North Korean Hackers

On March 13th 2025, our malware analysis engine alerted us to a potential malicious package that was added to NPM. First indications suggested this would be a clear-cut case, however, when we started peeling back the layers things weren’t quite as they seemed. Here is a story about how sophisticated nation state actors can hide malware within packages.

Reflecting on the Q1 Threat Landscape: Attacks & Lessons Learned

As a human risk management platform, we keep a close eye on the evolving threat landscape to help organisations detect and mitigate human cyber risks. The first quarter of 2025 has already revealed critical vulnerabilities, data breaches, and novel attack vectors that highlight the importance of proactive security measures and automated interventions. Here’s a deep dive into the major cyber security events of Q1 and what forward-thinking organisations, like yours, can learn from them.

Launching Aikido Malware - Open Source Threat Feed

Our Aikido Intel team has been identifying undisclosed open-source vulnerabilities using LLM-driven analysis and human verification. Now, we’re expanding our supply chain security research to detect and track malware in open-source packages, cheaper, better, & faster than what exists today.

Connect to Exchange Online PowerShell

Exchange Online PowerShell is a command-line management interface for administering and automating tasks in Exchange Online, which is a part of Microsoft 365. It allows administrators to manage user mailboxes, configure organizational settings, and perform bulk operations efficiently through scripting. Here are some benefits of using PowerShell for Exchange Online management.