Close Menu

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Kobbie Mainoo’s brother sports ‘free Mainoo’ shirt at Manchester United game

    December 16, 2025

    Everbloom built an AI to turn chicken feathers into cashmere

    December 16, 2025

    Manchester United keen on ex-Barca man as Amorim alternative

    December 16, 2025
    Facebook X (Twitter) Instagram
    Select Language
    Facebook X (Twitter) Instagram
    NEWS ON CLICK
    Subscribe
    Tuesday, December 16
    • Home
      • United States
      • Canada
      • Spain
      • Mexico
    • Top Countries
      • Canada
      • Mexico
      • Spain
      • United States
    • Politics
    • Business
    • Entertainment
    • Fashion
    • Health
    • Science
    • Sports
    • Travel
    NEWS ON CLICK
    Home»Science & Technology»US Science & Tech»Home Depot exposed access to internal systems for a year, says researcher
    US Science & Tech

    Home Depot exposed access to internal systems for a year, says researcher

    News DeskBy News DeskDecember 12, 2025No Comments2 Mins Read
    Share Facebook Twitter Pinterest Copy Link LinkedIn Tumblr Email VKontakte Telegram
    Home Depot exposed access to internal systems for a year, says researcher
    Share
    Facebook Twitter Pinterest Email Copy Link

    A security researcher said Home Depot exposed access to its internal systems for a year after one of its employees published a private access token online, likely by mistake. The researcher found the exposed token and tried to privately alert Home Depot to its security lapse but was ignored for several weeks. 

    The exposure is now fixed after TechCrunch contacted company representatives last week.

    Security researcher Ben Zimmermann told TechCrunch that, in early November, he found a published GitHub access token belonging to a Home Depot employee, which was exposed sometime in early 2024. 

    When he tested the token, Zimmermann said that it granted access to hundreds of private Home Depot source code repositories hosted on GitHub and allowed the ability to modify their contents. 

    The researcher said the keys allowed access to Home Depot’s cloud infrastructure, including its order fulfillment and inventory management systems, and code development pipelines, among other systems. Home Depot has hosted much of its developer and engineering infrastructure on GitHub since 2015, according to a customer profile on GitHub’s website.

    Zimmermann said he sent several emails to Home Depot but didn’t hear back. 

    Nor did he get a response from Home Depot’s chief information security officer, Chris Lanzilotta, after sending a message over LinkedIn.

    Zimmermann told TechCrunch that he has disclosed several similar exposures in recent months to companies, which have thanked him for his findings. 

    “Home Depot is the only company that ignored me,” he said.

    Given that Home Depot does not have a way to report security flaws, such as a vulnerability disclosure or bug bounty program, Zimmermann contacted TechCrunch in an effort to get the exposure fixed.

    When reached by TechCrunch on December 5, Home Depot spokesperson George Lane acknowledged receipt of our email but did not respond to follow-up emails asking for comment. The exposed token is no longer online, and the researcher said the token’s access was revoked soon after our outreach.

    We also asked Lane if Home Depot has the technical means, such as logs, to determine if anyone else used the token during the months it was left online to access any of Home Depot’s internal systems. We did not hear back.

    Cybersecurity Data Breach Exclusive GitHub Home Depot
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Telegram Copy Link
    News Desk
    • Website

    News Desk is the dedicated editorial force behind News On Click. Comprised of experienced journalists, writers, and editors, our team is united by a shared passion for delivering high-quality, credible news to a global audience.

    Related Posts

    US Science & Tech

    Everbloom built an AI to turn chicken feathers into cashmere

    December 16, 2025
    US Science & Tech

    The best mobile microphones for 2026

    December 16, 2025
    US Entertainment

    Jeremy Sisto Reveals If FBI’s Jubal Will Be Reprimanded After Finale

    December 16, 2025
    US Science & Tech

    Google is retiring its free dark web monitoring tool next year

    December 16, 2025
    US Science & Tech

    LG will debut its first Micro RGB television at CES

    December 16, 2025
    US Science & Tech

    VCs discuss why most consumer AI startups still lack staying power

    December 16, 2025
    Add A Comment
    Leave A Reply Cancel Reply

    Don't Miss

    Kobbie Mainoo’s brother sports ‘free Mainoo’ shirt at Manchester United game

    News DeskDecember 16, 20250

    Kobbie Mainoo was again at the centre of attention on Monday night as Manchester United…

    Everbloom built an AI to turn chicken feathers into cashmere

    December 16, 2025

    Manchester United keen on ex-Barca man as Amorim alternative

    December 16, 2025

    Fire at Thorncliffe Park highrise has been put out, no return date for residents – Toronto

    December 16, 2025
    Tech news by Newsonclick.com
    Top Posts

    The Roads Not Taken – Movie Reviews. TV Coverage. Trailers. Film Festivals.

    September 12, 2025

    Huey Lewis & The News, Heart And Soul

    September 12, 2025

    FNE Oscar Watch 2026: Croatia Selects Fiume o morte! as Oscar Bid

    September 12, 2025

    EU countries clash with Brussels over banking mergers – POLITICO

    July 2, 2025
    Stay In Touch
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo

    Subscribe to Updates

    Get the latest creative news from SmartMag about art & design.

    Editors Picks

    Kobbie Mainoo’s brother sports ‘free Mainoo’ shirt at Manchester United game

    December 16, 2025

    Everbloom built an AI to turn chicken feathers into cashmere

    December 16, 2025

    Manchester United keen on ex-Barca man as Amorim alternative

    December 16, 2025

    Fire at Thorncliffe Park highrise has been put out, no return date for residents – Toronto

    December 16, 2025
    About Us

    NewsOnClick.com is your reliable source for timely and accurate news. We are committed to delivering unbiased reporting across politics, sports, entertainment, technology, and more. Our mission is to keep you informed with credible, fact-checked content you can trust.

    We're social. Connect with us:

    Facebook X (Twitter) Instagram Pinterest YouTube
    Latest Posts

    Kobbie Mainoo’s brother sports ‘free Mainoo’ shirt at Manchester United game

    December 16, 2025

    Everbloom built an AI to turn chicken feathers into cashmere

    December 16, 2025

    Manchester United keen on ex-Barca man as Amorim alternative

    December 16, 2025

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Editorial Policy
    • Privacy Policy
    • Terms and Conditions
    • Disclaimer
    • Advertise
    • Contact Us
    © 2025 Newsonclick.com || Designed & Powered by ❤️ Trustmomentum.com.

    Type above and press Enter to search. Press Esc to cancel.