{"id":252614,"date":"2026-05-22T12:50:00","date_gmt":"2026-05-22T16:50:00","guid":{"rendered":"https:\/\/news-you-need.com\/index.php\/2026\/05\/22\/lawmakers-demand-answers-as-cisa-tries-to-contain-data-leak-krebs-on-security\/"},"modified":"2026-05-22T12:55:42","modified_gmt":"2026-05-22T16:55:42","slug":"lawmakers-demand-answers-as-cisa-tries-to-contain-data-leak-krebs-on-security","status":"publish","type":"post","link":"https:\/\/news-you-need.com\/index.php\/2026\/05\/22\/lawmakers-demand-answers-as-cisa-tries-to-contain-data-leak-krebs-on-security\/","title":{"rendered":"Lawmakers Demand Answers as CISA Tries to Contain Data Leak \u2013 Krebs on Security"},"content":{"rendered":"<p><a href=\"https:\/\/krebsonsecurity.com\/2026\/05\/lawmakers-demand-answers-as-cisa-tries-to-contain-data-leak\/\">Lawmakers Demand Answers as CISA Tries to Contain Data Leak \u2013 Krebs on Security<\/a><\/p>\n<p><a href=\"https:\/\/krebsonsecurity.com\/2026\/05\/lawmakers-demand-answers-as-cisa-tries-to-contain-data-leak\/\">https:\/\/krebsonsecurity.com\/2026\/05\/lawmakers-demand-answers-as-cisa-tries-to-contain-data-leak\/<\/a><\/p>\n<p>Publish Date: <a href=\"publish_date]\">2026-05-22 12:50:00<\/a><\/p>\n<p>Source Domain: <a href=\"krebsonsecurity.com\">krebsonsecurity.com<\/a><\/p>\n<p>Lawmakers in both houses of Congress are demanding answers from the <strong>U.S. Cybersecurity &#038; Infrastructure Security Agency<\/strong> (CISA) after KrebsOnSecurity reported this week that a CISA contractor intentionally published AWS GovCloud keys and a vast trove of other agency secrets on a public <strong>GitHub<\/strong> account. The inquiry comes as CISA is still struggling to contain the breach and invalidate the leaked credentials.<\/p>\n<\/p>\n<p>On May 18, KrebsOnSecurity reported that a CISA contractor with administrative access to the agency\u2019s code development platform had created a public GitHub profile called \u201c<strong>Private-CISA<\/strong>\u201d that included plaintext credentials to dozens of internal CISA systems. Experts who reviewed the exposed secrets said the commit logs for the code repository showed the CISA contractor disabled GitHub\u2019s built-in protection against publishing sensitive credentials in public repos.<\/p>\n<p>CISA acknowledged the leak but has not responded to questions about the duration of the data exposure. However, experts who reviewed the now-defunct Private-CISA archive said it was originally created in November 2025, and that it exhibits a pattern consistent with an individual operator using the repository as a working scratchpad or synchronization mechanism rather than a curated project repository.<\/p>\n<p>In a written statement, CISA said \u201cthere is no indication that any sensitive data was compromised as a result of the incident.\u201d But in a May 19 a letter (PDF) to CISA\u2019s Acting Director <strong>Nick Andersen<\/strong>, <strong>Sen. Maggie Hassan<\/strong> (D-NH) said the credential leak raises serious questions about how such a security lapse could occur at the very agency charged with helping to prevent cyber breaches.<\/p>\n<p>\u201cThis reporting raises serious concerns regarding CISA\u2019s internal policies and procedures at a time of significant cybersecurity threats against U.S. critical infrastructure,\u201d Sen. Hassan wrote.<\/p>\n<p><img aria-describedby=\"caption-attachment-73646\" decoding=\"async\" loading=\"lazy\" class=\"size-full wp-image-73646\" src=\"https:\/\/krebsonsecurity.com\/wp-content\/uploads\/2026\/05\/HassanCISAletter.png\" alt=\"\" width=\"808\" height=\"823\" srcset=\"https:\/\/krebsonsecurity.com\/wp-content\/uploads\/2026\/05\/HassanCISAletter.png 808w, https:\/\/krebsonsecurity.com\/wp-content\/uploads\/2026\/05\/HassanCISAletter-768x782.png 768w, https:\/\/krebsonsecurity.com\/wp-content\/uploads\/2026\/05\/HassanCISAletter-782x797.png 782w\" sizes=\"(max-width: 808px) 100vw, 808px\"\/><\/p>\n<p id=\"caption-attachment-73646\" class=\"wp-caption-text\">A May 19 letter from Sen. Margaret Hassan (D-NH) to the acting director of CISA demanded answers to&#8230;<\/p>\n<p><a href=\"https:\/\/krebsonsecurity.com\/2026\/05\/lawmakers-demand-answers-as-cisa-tries-to-contain-data-leak\/\">Source<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Lawmakers Demand Answers as CISA Tries to Contain Data Leak \u2013 Krebs on Security https:\/\/krebsonsecurity.com\/2026\/05\/lawmakers-demand-answers-as-cisa-tries-to-contain-data-leak\/&#8230;<\/p>\n","protected":false},"author":1,"featured_media":252616,"comment_status":"closed","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"fifu_image_url":"https:\/\/krebsonsecurity.com\/wp-content\/uploads\/2026\/05\/CISA-logo.png","fifu_image_alt":"","footnotes":""},"categories":[15],"tags":[30,24],"class_list":["post-252614","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cybersecurity","tag-breach","tag-cybersecurity"],"_links":{"self":[{"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/posts\/252614"}],"collection":[{"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/comments?post=252614"}],"version-history":[{"count":1,"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/posts\/252614\/revisions"}],"predecessor-version":[{"id":252617,"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/posts\/252614\/revisions\/252617"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/media\/252616"}],"wp:attachment":[{"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/media?parent=252614"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/categories?post=252614"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/tags?post=252614"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}