Leaked API keys are nothing new, but the scale of the problem in front-end code has been largely a mystery – until now. Intruder’s research team built a new secrets detection method and scanned 5 million applications specifically looking for secrets hidden in JavaScript bundles. Here’s what we learned.
First seen on bleepingcomputer.com
Jump to article: www.bleepingcomputer.com/news/security/what-5-million-apps-revealed-about-secrets-in-javascript/
![]()

