Fetching from the wire…
Security2026-07-24 · source-backed
A researcher found the token in a Wisenet XNP-9300RW login page, then pulled roughly 500 Hanwha firmware images: 62% were extractable, three contained the same token. Hanwha revoked within 12 hours through its open security-reporting address, which is genuinely good for the category. Credential hygiene in build artifacts is where agent-era attacks start, because agents read artifacts humans never open.
Each link below shares sources, entities, or timing with this story.
Shared entities / Shared topic / Earlier coverage
Both cover GitHub, HTML; overlapping topics (agent, attack); earlier GitHub coverage from 2026-05-24.
Both cover GitHub, HTML; overlapping topics (agent, attack); earlier GitHub coverage from 2026-02-25.
Shared entity: GitHub / Shared topic / Earlier coverage / Tension
Both cover GitHub; overlapping topics (agent, attack, credential); earlier GitHub coverage from 2026-06-09.
Shared entities / Earlier coverage / Tension
Both cover GitHub, HTML; earlier GitHub coverage from 2026-07-23; pushes against this story (vs).
Shared entity: GitHub / Shared topic / Earlier coverage / Downstream implication
Both cover GitHub; overlapping topics (artifact, category); earlier GitHub coverage from 2026-07-23.
Shared entity: HTML / Shared topic / Earlier coverage / Tension
Both cover HTML; overlapping topics (agent, attack); earlier HTML coverage from 2026-07-23.
Both cover HTML; overlapping topics (agent, credential); earlier HTML coverage from 2026-07-07.
Shared entity: GitHub / Shared topic / Earlier coverage / Tension
Both cover GitHub; overlapping topics (agent, attack); earlier GitHub coverage from 2026-03-20.