{"id":729822,"date":"2023-05-11T19:59:43","date_gmt":"2023-05-11T21:59:43","guid":{"rendered":"https:\/\/teknomers.com\/fr\/github-etend-la-protection-push-pour-eviter-les-fuites-accidentelles-de-cles-et-autres-secrets\/"},"modified":"2023-05-11T19:59:46","modified_gmt":"2023-05-11T21:59:46","slug":"github-etend-la-protection-push-pour-eviter-les-fuites-accidentelles-de-cles-et-autres-secrets","status":"publish","type":"post","link":"https:\/\/teknomers.com\/fr\/github-etend-la-protection-push-pour-eviter-les-fuites-accidentelles-de-cles-et-autres-secrets\/","title":{"rendered":"GitHub \u00e9tend la protection Push pour \u00e9viter les fuites accidentelles de cl\u00e9s et autres secrets"},"content":{"rendered":"<p> <br \/>\n<\/p>\n<div>\n<p><span class=\"p-author\"><i class=\"icon-font icon-calendar\">\ue802<\/i><span class=\"author\">11 mai 2023<\/span><i class=\"icon-font icon-user\">\ue804<\/i><span class=\"author\">Ravie Lakshmanan<\/span><\/span><\/p>\n<\/div>\n<div id=\"articlebody\">\n<div class=\"separator\" style=\"clear: both;\"><\/div>\n<p>GitHub a annonc\u00e9 la disponibilit\u00e9 g\u00e9n\u00e9rale d&#8217;une nouvelle fonctionnalit\u00e9 de s\u00e9curit\u00e9 appel\u00e9e <strong>anti-pouss\u00e9e<\/strong>qui vise \u00e0 emp\u00eacher les d\u00e9veloppeurs de divulguer par inadvertance des cl\u00e9s et d&#8217;autres secrets dans leur code.<\/p>\n<p>La plate-forme d&#8217;h\u00e9bergement de r\u00e9f\u00e9rentiel bas\u00e9e sur le cloud appartenant \u00e0 Microsoft, qui a commenc\u00e9 <a rel=\"nofollow noopener\" href=\"https:\/\/github.blog\/2022-04-04-push-protection-github-advanced-security\/\" target=\"_blank\">tester la fonctionnalit\u00e9<\/a> il y a un an, a d\u00e9clar\u00e9 qu&#8217;il \u00e9tendait \u00e9galement la protection push \u00e0 tous les r\u00e9f\u00e9rentiels publics sans frais suppl\u00e9mentaires.<\/p>\n<p>La fonctionnalit\u00e9 est con\u00e7ue pour fonctionner main dans la main avec l&#8217;existant <a rel=\"nofollow noopener\" href=\"https:\/\/docs.github.com\/en\/code-security\/secret-scanning\/protecting-pushes-with-secret-scanning\" target=\"_blank\">fonction de num\u00e9risation secr\u00e8te<\/a>qui analyse les r\u00e9f\u00e9rentiels \u00e0 la recherche de formats secrets connus pour emp\u00eacher leur utilisation frauduleuse et \u00e9viter des cons\u00e9quences potentiellement graves.<\/p>\n<div class=\"ad_two clear\"><center class=\"cf\"><a rel=\"nofollow noopener\" href=\"https:\/\/thn.news\/tractivethreatsstatic-inside-2\" target=\"_blank\" title=\"Cybersecurity\"><img loading=\"lazy\" decoding=\"async\" class=\"lazyload\" alt=\"La cyber-s\u00e9curit\u00e9\" src=\"https:\/\/thehackernews.com\/new-images\/img\/b\/R29vZ2xl\/AVvXsEj92WbgLIDS9cDnAqrFHjS-Xxt9Pf3L4T4X0VQ9xtBRsv39wX9aWEDdJKlklkKXzCcTFKOU8W3Jv4DV-pIVJKKdfFdknvvvBhDQP_F0b48qgqcQM_2VPRKsu2rHtJTXRc-2VCN38uovchYzKGca-LTi2RvS7pqs6NsrIffkDivZSV4igwp-EWWsK90QPQ\/s728-e100\/tractivethreatsstatic-728x90.png\" width=\"728\" height=\"90\"\/><\/a><\/center><\/div>\n<p>&#8220;La protection push emp\u00eache les fuites secr\u00e8tes sans compromettre l&#8217;exp\u00e9rience du d\u00e9veloppeur en analysant les secrets hautement identifiables avant qu&#8217;ils ne soient commis&#8221;, GitHub <a rel=\"nofollow noopener\" href=\"https:\/\/github.blog\/2023-05-09-push-protection-is-generally-available-and-free-for-all-public-repositories\/\" target=\"_blank\">a dit<\/a> plus t\u00f4t cette semaine.<\/p>\n<div class=\"separator\" style=\"clear: both;\"><img decoding=\"async\" src=\"https:\/\/teknomers.com\/fr\/wp-content\/uploads\/2023\/05\/GitHub-etend-la-protection-Push-pour-eviter-les-fuites-accidentelles.gif\" alt=\"Protection anti-pouss\u00e9e GitHub\" border=\"0\" data-original-height=\"456\" data-original-width=\"728\" title=\"Protection anti-pouss\u00e9e GitHub\"\/><\/div>\n<p>&#8220;Lorsqu&#8217;un secret est d\u00e9tect\u00e9 dans le code, les d\u00e9veloppeurs sont invit\u00e9s directement dans leur IDE ou leur interface de ligne de commande avec des conseils de correction pour s&#8217;assurer que le secret n&#8217;est jamais expos\u00e9.&#8221;<\/p>\n<p>Alors que <a rel=\"nofollow noopener\" href=\"https:\/\/github.blog\/changelog\/2023-05-09-secret-scannings-push-protection-now-generally-available-for-github-advanced-security\/\" target=\"_blank\">anti-pouss\u00e9e<\/a> peut \u00eatre contourn\u00e9 en fournissant une raison (par exemple, test, faux positif ou risque acceptable), les administrateurs du r\u00e9f\u00e9rentiel et de l&#8217;organisation et les responsables de la s\u00e9curit\u00e9 seront inform\u00e9s de ces \u00e9v\u00e9nements par e-mail.<\/p>\n<div class=\"ad_two clear\" style=\"margin: 20px 10px 30px 0;background: rgb(249 251 255);color: rgb(22, 7, 85);padding: 0px 5%;border: 2px solid rgb(217 222 255);border-radius: 10px;text-align: left;box-shadow: 10px 10px 0 #e2ebff;border-top-left-radius: 50px;border-bottom-right-radius: 50px;\"> <span style=\"font-size:14px;margin:25px 0 0 0;font-weight:900;background: #dbdefc;display:inline-block;padding: 3px 20px;border-radius: 100px;letter-spacing: 0.5px;color: #596cec;\">WEBINAIRE \u00c0 VENIR<\/span><\/p>\n<p>Apprenez \u00e0 arr\u00eater les ransomwares avec une protection en temps r\u00e9el<\/p>\n<p style=\"text-align:left;font-size:17px;line-height:30px;margin: 10px 0;color: #4e6a8d;\">Rejoignez notre webinaire et d\u00e9couvrez comment arr\u00eater les attaques de ransomwares dans leur \u00e9lan gr\u00e2ce \u00e0 la MFA en temps r\u00e9el et \u00e0 la protection des comptes de service.<\/p>\n<p><a rel=\"nofollow noopener\" href=\"https:\/\/thn.news\/silver-web-inside\" target=\"_blank\" style=\"padding: 10px 20px;border-radius: 8px;background-color: #4469f5;font-size:16px;display:inline-block;color:#fff;border:0;line-height:inherit;text-decoration:none;cursor:pointer;MARGIN: 10px 0 25px 0;float:left;font-weight:500;letter-spacing: 0.2px;\">Sauvez ma place\u00a0!<\/a><\/div>\n<p>Pour activer l&#8217;option, les utilisateurs peuvent se diriger vers Param\u00e8tres> S\u00e9lectionnez &#8220;S\u00e9curit\u00e9 et analyse du code&#8221;> Activer &#8220;Analyse secr\u00e8te&#8221; et &#8220;Protection Push&#8221;.<\/p>\n<p>On estime que la protection push, depuis sa mise en ligne en avril 2022 en version b\u00eata, a emp\u00each\u00e9 17 000 fuites secr\u00e8tes accidentelles, \u00e9conomisant plus de 95 000 heures qui auraient autrement \u00e9t\u00e9 consacr\u00e9es \u00e0 la r\u00e9vocation, la rotation et la correction des secrets compromis, a ajout\u00e9 la soci\u00e9t\u00e9.<\/p>\n<p>Le d\u00e9veloppement intervient pr\u00e8s de cinq mois apr\u00e8s que GitHub a rendu l&#8217;analyse secr\u00e8te gratuite pour tous les r\u00e9f\u00e9rentiels publics, permettant aux utilisateurs d&#8217;\u00eatre inform\u00e9s des fuites de secrets dans leurs r\u00e9f\u00e9rentiels.<\/p>\n<p><\/p>\n<div class=\"cf note-b\">Vous avez trouv\u00e9 cet article int\u00e9ressant ?  Suivez-nous sur <a rel=\"nofollow noopener\" href=\"https:\/\/twitter.com\/thehackersnews\" target=\"_blank\">Twitter <i class=\"icon-font icon-twitter\">\uf099<\/i><\/a>  et <a rel=\"nofollow noopener\" href=\"https:\/\/www.linkedin.com\/company\/thehackernews\/\" target=\"_blank\">LinkedIn<\/a> pour lire plus de contenu exclusif que nous publions.<\/div>\n<\/div>\n<p><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><br \/>\n<br \/><br \/>\n<br \/><a href=\"https:\/\/thehackernews.com\/2023\/05\/github-extends-push-protection-to.html\" rel=\"nofollow noopener\" target=\"_blank\">ttn-fr-57<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>\ue80211 mai 2023\ue804Ravie Lakshmanan GitHub a annonc\u00e9 la disponibilit\u00e9 g\u00e9n\u00e9rale d&#8217;une nouvelle fonctionnalit\u00e9 de s\u00e9curit\u00e9 appel\u00e9e anti-pouss\u00e9equi vise \u00e0 emp\u00eacher les d\u00e9veloppeurs de divulguer par inadvertance des cl\u00e9s et d&#8217;autres secrets dans leur code. La plate-forme d&#8217;h\u00e9bergement de r\u00e9f\u00e9rentiel bas\u00e9e sur le cloud appartenant \u00e0 Microsoft, qui a commenc\u00e9 tester la fonctionnalit\u00e9 il y a [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":729823,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[6],"tags":[161823,246,6208,4168,4158,4165,4161,2432,8407,22237,50438,4157,4159,4171,4170,65,4167,4160,4163,4162,185,6845,40602,5256,4172,4169,4166,4164],"class_list":["post-729822","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-technologie","tag-accidentelles","tag-autres","tag-cles","tag-comment-pirater","tag-cyber-actualites","tag-cyber-attaques","tag-cyber-mises-a-jour","tag-etend","tag-eviter","tag-fuites","tag-github","tag-lactualite-de-la-cybersecurite","tag-lactualite-de-la-cybersecurite-aujourdhui","tag-lactualite-des-hackers","tag-la-securite-des-informations","tag-les","tag-logiciel-malveillant-de-ransomware","tag-mises-a-jour-de-la-cybersecurite","tag-nouvelles-de-piratage","tag-nouvelles-de-pirates","tag-pour","tag-protection","tag-push","tag-secrets","tag-securite-informatique","tag-securite-internet","tag-violation-de-donnees","tag-vulnerabilite-logicielle"],"_links":{"self":[{"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/posts\/729822","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/comments?post=729822"}],"version-history":[{"count":0,"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/posts\/729822\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/media\/729823"}],"wp:attachment":[{"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/media?parent=729822"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/categories?post=729822"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/tags?post=729822"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}