Close Menu
TechTost
  • AI
  • Apps
  • Crypto
  • Fintech
  • Hardware
  • Media & Entertainment
  • Security
  • Startups
  • Transportation
  • Venture
  • Recommended Essentials
What's Hot

Jedify Raises $24M To Help Companies Arm AI Agents With Their Business Context

Elon Musk becomes the world’s first trillionaire after SpaceX’s historic IPO

SpaceX IPO: Everything You Need To Know

Facebook X (Twitter) Instagram
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms and Conditions
  • Disclaimer
Facebook X (Twitter) Instagram
TechTost
Subscribe Now
  • AI

    SpaceX IPO: Everything You Need To Know

    12 June 2026

    Theker just raised $85 million to build factory robot that specializes in nothing

    12 June 2026

    DoorDash’s new AI chatbot lets you order with prompts and photos

    11 June 2026

    Opendoor’s exit from India fuels a larger conversation about AI and outsourcing

    11 June 2026

    How memory tools can make AI models worse

    10 June 2026
  • Apps

    Equal AI raises $30 million to screen calls so Indians don’t have to

    12 June 2026

    Bluesky launches group chats as company shifts focus to community features

    12 June 2026

    Pool’s new app turns your screenshots into something useful

    11 June 2026

    Pinterest bets on creators with Amazon Storefront integration

    11 June 2026

    Zest Launches Restaurant Discovery App Powered by Where People Really Eat

    10 June 2026
  • Crypto

    Startup Battlefield 200 applications close today

    27 May 2026

    5 days left: Save up to $410 on Disrupt 2026 passes

    25 May 2026

    As crypto cools, a16z crypto raises $2.2 billion in capital

    6 May 2026

    Coinbase to lay off 14% of staff as part of broader restructuring

    5 May 2026

    British cryptographer Adam Back denies NYT report that he is Bitcoin creator Satoshi Nakamoto

    9 April 2026
  • Fintech

    Ramp raises $750M at $44B valuation as investors thirst for fintechs with AI history

    5 June 2026

    Last 24 hours to save up to $410 on your Disrupt 2026 ticket

    29 May 2026

    2 days left: Lock in up to $410 in ticket savings for Disrupt 2026

    28 May 2026

    Robinhood now allows your AI agents to trade stocks

    28 May 2026

    Disrupt 2026 Early Bird ticket savings expire in 3 days

    27 May 2026
  • Hardware

    Jeff Bezos’ Prometheus Raises $12 Billion to Build an ‘Artificial General Engineer’ for the Natural World

    12 June 2026

    WWDC 2026: What to expect, from Siri’s long-awaited revamp to Apple Intelligence and iOS 27

    9 June 2026

    What to expect from WWDC 2026: The long-awaited Siri refresh and Apple Intelligence updates

    7 June 2026

    What to expect from WWDC 2026: The long-awaited Siri refresh and Apple Intelligence updates

    5 June 2026

    Oura Ring 5 review: Thinner, lighter, better

    4 June 2026
  • Media & Entertainment

    Deezer’s new tool can recognize AI music from Spotify, Apple Music and more

    11 June 2026

    Netflix expands revamped mobile app across Asia and doubles down on games for kids

    10 June 2026

    Plex adds new social features ahead of major price hike for its lifetime pass

    6 June 2026

    Startup Battlefield 200 applications officially close in 3 days

    5 June 2026

    Founders Fund Launches Series of Games Starring Sam Altman, Palmer Luckey and Other Tech Elites

    5 June 2026
  • Security

    ServiceNow is telling customers that a bug left some of their data exposed online

    12 June 2026

    Oracle warns of security flaw that hackers abused to breach 100+ companies

    11 June 2026

    Cybersecurity researchers not happy with guardrails in Anthropic’s Fable

    11 June 2026

    North Koreans behind nearly half of US tech industry hacks, CrowdStrike says

    10 June 2026

    Massachusetts votes in favor of new privacy bill that bans sale of precise location data

    9 June 2026
  • Startups

    Jedify Raises $24M To Help Companies Arm AI Agents With Their Business Context

    12 June 2026

    Military SPAC Quantum Space is trying to catch SpaceX’s IPO wave

    12 June 2026

    Microsoft is using Alt Carbon as a sign of India’s growing role in carbon removal

    11 June 2026

    Warner Music acquires artificial intelligence performance startup Sureel AI

    11 June 2026

    Datadog veterans launch AI coding startup Niteshift in a bet against Big AI lock-in

    10 June 2026
  • Transportation

    Elon Musk becomes the world’s first trillionaire after SpaceX’s historic IPO

    12 June 2026

    Decart’s new global model can simulate hours of photorealistic driving — with some caveats

    12 June 2026

    Waymo is launching a rewards program with 10% cash back and free cancellations

    11 June 2026

    Everyone wants a piece of Tesla’s batteries

    11 June 2026

    Because everyone is an energy company now

    10 June 2026
  • Venture

    Why business AI will be the focus of VivaTech 2026

    10 June 2026

    How Justin Ernest invested nearly $500 million in hot startups without a traditional VC fund

    10 June 2026

    Mercor’s Brendan Foody calls out Sequoia, accusing it of “double pricing” valuation tricks.

    9 June 2026

    Founders share VC horror stories and some name names

    6 June 2026

    Defense technology, artificial intelligence and fundraising take center stage at StrictlyVC Los Angeles

    5 June 2026
  • Recommended Essentials
TechTost
You are at:Home»Security»Home Depot exposed access to internal systems for a year, researcher says
Security

Home Depot exposed access to internal systems for a year, researcher says

techtost.comBy techtost.com13 December 202502 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Email
Home Depot Exposed Access To Internal Systems For A Year,
Share
Facebook Twitter LinkedIn Pinterest Email

A security researcher said Home Depot exposed access to its internal systems for a year after one of its employees posted a private access token online, likely by mistake. The researcher found the exposed token and attempted to privately notify Home Depot of its security flaw, but was ignored for several weeks.

The report has now been corrected after TechCrunch contacted company representatives last week.

Security researcher Ben Zimmerman told TechCrunch that, in early November, it found a published GitHub access token belonging to a Home Depot employee that was exposed sometime in early 2024.

When testing the token, Zimmermann said it granted access to hundreds of private Home Depot source code repositories hosted on GitHub and allowed the ability to modify their content.

The researcher said the keys allowed access to Home Depot’s cloud infrastructure, including order fulfillment and inventory management systems, and code development pipelines, among other systems. Home Depot has hosted much of its developer and engineering infrastructure on GitHub since 2015, according to a customer profile on the GitHub website.

Zimmermann said he sent several emails to Home Depot but did not receive a response.

Nor did he get a response from Home Depot’s chief information security officer, Chris Lanzilotta, after sending a message through LinkedIn.

Zimmermann told TechCrunch that he has uncovered several similar openings in recent months at companies, which have thanked him for his findings.

“Home Depot is the only company that ignored me,” he said.

Since Home Depot has no way to report security flaws, such as a vulnerability disclosure or bug bounty program, Zimmermann reached out to TechCrunch in an attempt to correct the report.

When reached by TechCrunch on Dec. 5, Home Depot spokesman George Lane acknowledged receipt of our email but did not respond to subsequent emails seeking comment. The exposed token is no longer online and the researcher said access to the token was revoked shortly after we contacted them.

We also asked Lane if Home Depot has the technical means, such as logs, to determine if anyone else used the token during the months it was online to access any of Home Depot’s internal systems. We didn’t hear back.

access cyber security data breach Depot Exclusive exposed GitHub home home depot Internal researcher systems year
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleRetro, a photo-sharing app for friends, lets you ‘time travel’ to your camera roll
Next Article Google Translate now lets you listen to real-time translations on your headphones
bhanuprakash.cg
techtost.com
  • Website

Related Posts

ServiceNow is telling customers that a bug left some of their data exposed online

12 June 2026

Decart’s new global model can simulate hours of photorealistic driving — with some caveats

12 June 2026

Oracle warns of security flaw that hackers abused to breach 100+ companies

11 June 2026
Add A Comment

Leave A Reply Cancel Reply

Don't Miss

Jedify Raises $24M To Help Companies Arm AI Agents With Their Business Context

12 June 2026

Elon Musk becomes the world’s first trillionaire after SpaceX’s historic IPO

12 June 2026

SpaceX IPO: Everything You Need To Know

12 June 2026
Stay In Touch
  • Facebook
  • YouTube
  • TikTok
  • WhatsApp
  • Twitter
  • Instagram
Fintech

Ramp raises $750M at $44B valuation as investors thirst for fintechs with AI history

5 June 2026

Last 24 hours to save up to $410 on your Disrupt 2026 ticket

29 May 2026

2 days left: Lock in up to $410 in ticket savings for Disrupt 2026

28 May 2026
Startups

Jedify Raises $24M To Help Companies Arm AI Agents With Their Business Context

Military SPAC Quantum Space is trying to catch SpaceX’s IPO wave

Microsoft is using Alt Carbon as a sign of India’s growing role in carbon removal

© 2026 TechTost. All Rights Reserved
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms and Conditions
  • Disclaimer

Type above and press Enter to search. Press Esc to cancel.