CISA Contractor Leaks AWS GovCloud Keys
Analysis based on 11 articles · First reported May 18, 2026 · Last updated May 19, 2026
The market is negatively impacted by the severe data leak from the United States — Cybersecurity and Infrastructure Security Agency>>> contractor, raising concerns about government cybersecurity and the security of cloud environments like Amazon — Amazon Web Services>>> GovCloud. This could lead to increased scrutiny on government contractors like Nightwing>>> and potentially higher demand for cybersecurity solutions and services.
A contractor for the United States — Cybersecurity and Infrastructure Security Agency>>> (CISA) inadvertently exposed highly sensitive administrative credentials for multiple Amazon — Amazon Web Services>>> GovCloud accounts and dozens of internal CISA systems on a public Microsoft — GitHub>>> repository for at least six months. The breach, discovered by Guillaume Valadon>>> of GitGuardian>>> and validated by Philippe Caturegli>>> of Seralys>>>, included plaintext passwords, cloud access tokens, and detailed files on CISA's software development. The repository, named 'Private-CISA', was maintained by an employee of Nightwing>>> and remained publicly accessible until mid-May 2026. Experts called it one of the most serious government data leaks in recent years, highlighting poor security practices such as disabling Microsoft — GitHub>>>'s secret scanning and storing passwords in plain text. Although CISA stated there is no indication of sensitive data compromise and has revoked credentials, the incident raises serious questions about government cybersecurity, contractor oversight, and the agency's ability to protect the United States>>>' critical infrastructure, especially given its reduced staffing and budget constraints.
Set up alerts, explore entity relationships, search across thousands of events, and build custom intelligence feeds.
Open Dashboard