There are so many open source tools that can detect sensitive API keys (secrets) in git repos. But theres no single tool that can be integrated to help you achieve real time secrets detection. This talk is about the experiment on how we implemented a real time git secrets monitoring solution. This talk will cover the following:
* Problem we had
* Techniques to solve that
* Existing tools that can help us
* Comparison of tools
* Final architecture and product
* What we learnt from the experiment
* Future enhancements

AGENDA:
* OWASP Suffolk Introduction, Welcome and News – WTC
Welcome and an update on OWASP Projects & Events from the OWASP Suffolk Chapter Leader.
* Detecting secrets in code committed to Gitlab (in real time) –
Chandrapal Badshah
* Open discussion/ lighting session (if anyone prepares something) / general networking

 

Book now
Online
Event by OWASP

Other events coming soon

Web Summit Rise Hong Kong 2025

RISE Hong Kong 2025

“The most brilliant minds in international tech” will gather at RISE. Join us when we return to Hong Kong in March...

Web Summit Qatar:

Web Summit Qatar:2024

In February 2024, thousands of international entrepreneurs, investors and leaders will gather in Doha to connect the...