TTPwire Vol. 1 · MITRE ATT&CK·Tagged

← All stories

GitGuardian

Local Guardrails for Secrets Security in the Age of AI Coding Assistants

Dwayne McDaniel · 2 days ago · Read original ↗

ATT&CK techniques detected

3 predictions
T1195.001Compromise Software Dependencies and Development Tools
99%
“. security cannot wait until code reaches a remote repository or a pipeline. by then, a credential may already be in git history, a model prompt, a local log, a build artifact, or a package install script ’ s reach. the control point has to move earlier in the software creation p…”
T1195.001Compromise Software Dependencies and Development Tools
92%
“local guardrails for secrets security in the age of ai coding assistants software supply chain security used to feel like a problem that lived somewhere else. the repository and build system were top of mind. package registries, continuous integration and continuous delivery pipe…”
T1587Develop Capabilities
47%
“. security cannot wait until code reaches a remote repository or a pipeline. by then, a credential may already be in git history, a model prompt, a local log, a build artifact, or a package install script ’ s reach. the control point has to move earlier in the software creation p…”

Summary

Modern developer environments expose sensitive context across files, prompts, logs, and commands. Learn how layered local controls reduce secrets risk.