DEV Community

Dwayne McDaniel profile picture

Dwayne McDaniel

Dwayne has been working as a Developer Relations professional since 2015 and has been involved in tech communities since 2005. He loves sharing his knowledge all around the world!

Location Chicago, IL Joined Joined on  Personal website https://dwayne-mcdaniel.com/

Work

Developer Evangelist

Four Year Club
Three Year Club
Top 7
Two Year Club
Writing Debut
8 Week Writing Streak
One Year Club
4 Week Writing Streak
Securing Agentic AI Workflows in n8n: From Leaked API Keys to Encryption Key Compromise

Securing Agentic AI Workflows in n8n: From Leaked API Keys to Encryption Key Compromise

Comments
12 min read
Credential Harvesting Explained: How Attackers Collect Secrets From Developer Machines

Credential Harvesting Explained: How Attackers Collect Secrets From Developer Machines

Comments
12 min read
What Was on This Machine? Answering the Blast Radius Question After a Laptop Compromise

What Was on This Machine? Answering the Blast Radius Question After a Laptop Compromise

Comments
10 min read
An AI Agent Breached Hugging Face. The Attack Playbook Was Older Than the Attacker

An AI Agent Breached Hugging Face. The Attack Playbook Was Older Than the Attacker

1
Comments 1
7 min read
How to Reduce Time to Revoke for Exposed Credentials

How to Reduce Time to Revoke for Exposed Credentials

5
Comments 1
8 min read
Why SAST and DAST Aren't Enough for Secrets Security

Why SAST and DAST Aren't Enough for Secrets Security

Comments
10 min read
How to Measure Time to Revoke for Exposed Credentials

How to Measure Time to Revoke for Exposed Credentials

Comments
5 min read
The Perimeter Moved to the Laptop: From Network, to Identity, to the Developer Endpoint

The Perimeter Moved to the Laptop: From Network, to Identity, to the Developer Endpoint

Comments
8 min read
What CISA Got Right After Its GitHub Leak: Lessons Every Organization Should Copy

What CISA Got Right After Its GitHub Leak: Lessons Every Organization Should Copy

Comments
4 min read
Identity Infrastructure: Why Credentials Are the Layer Directories Don't Secure

Identity Infrastructure: Why Credentials Are the Layer Directories Don't Secure

Comments
9 min read
GitGuardian Power for Amazon Kiro: Secrets Detection Built Into the Agent

GitGuardian Power for Amazon Kiro: Secrets Detection Built Into the Agent

Comments 1
4 min read
Every Laptop Is a Credential Store: Complete Map of Hidden Secrets

Every Laptop Is a Credential Store: Complete Map of Hidden Secrets

Comments
9 min read
Unified Secrets Security with GitGuardian and AWS Secrets Manager

Unified Secrets Security with GitGuardian and AWS Secrets Manager

Comments
5 min read
Stop Leaking API Keys: The Backend for Frontend (BFF) Pattern Explained

Stop Leaking API Keys: The Backend for Frontend (BFF) Pattern Explained

2
Comments
8 min read
What AI Agents Can Teach Us About NHI Governance

What AI Agents Can Teach Us About NHI Governance

Comments
8 min read
HMAC Secrets Explained: Authentication You Can Actually Implement

HMAC Secrets Explained: Authentication You Can Actually Implement

5
Comments
6 min read
Boards Focus On Risk, Resilience, and Operational Realities: Where NHI Governance Fits In

Boards Focus On Risk, Resilience, and Operational Realities: Where NHI Governance Fits In

Comments
10 min read
Responding to Exposed Secrets - An SRE's Incident Response Playbook

Responding to Exposed Secrets - An SRE's Incident Response Playbook

Comments
10 min read
Your Secrets Need a VDP, Not Just a Bug Bounty

Your Secrets Need a VDP, Not Just a Bug Bounty

Comments
9 min read
The Streak Continues: Four More Supply Chain Attacks Hit npm and PyPI

The Streak Continues: Four More Supply Chain Attacks Hit npm and PyPI

Comments
7 min read
Aligning NHI Governance With Financial Services Regulatory Expectations

Aligning NHI Governance With Financial Services Regulatory Expectations

Comments
9 min read
Blast Radius: What a Leaked Secret Breaks

Blast Radius: What a Leaked Secret Breaks

Comments
8 min read
SRE Playbook: A Guide to Discover and Catalog Non-Human Identities (NHI)

SRE Playbook: A Guide to Discover and Catalog Non-Human Identities (NHI)

Comments
10 min read
Confronting Vault Sprawl And The Risks It Brings

Confronting Vault Sprawl And The Risks It Brings

Comments
8 min read
Shifting Security Left for AI Agents: Enforcing AI-Generated Code Security with GitGuardian MCP

Shifting Security Left for AI Agents: Enforcing AI-Generated Code Security with GitGuardian MCP

Comments 1
6 min read
Protecting Developers Means Protecting Their Secrets

Protecting Developers Means Protecting Their Secrets

Comments
10 min read
Claude Code Security: Why the Real Risk Lies Beyond Code

Claude Code Security: Why the Real Risk Lies Beyond Code

Comments 1
5 min read
Who Actually Owns This Service Account?

Who Actually Owns This Service Account?

Comments
5 min read
Security First, Transparency Always: Inside GitGuardian's Responsible Disclosure Process

Security First, Transparency Always: Inside GitGuardian's Responsible Disclosure Process

5
Comments
4 min read
Extending Our Mission With Developer Endpoint Protection

Extending Our Mission With Developer Endpoint Protection

Comments
5 min read
The State of Secrets Sprawl 2026: AI-Service Leaks Surge 81% and 29M Secrets Hit Public GitHub

The State of Secrets Sprawl 2026: AI-Service Leaks Surge 81% and 29M Secrets Hit Public GitHub

Comments
6 min read
2,622 Valid Certificates Exposed: A Google-GitGuardian Study Maps Private Key Leaks to Real-World Risk

2,622 Valid Certificates Exposed: A Google-GitGuardian Study Maps Private Key Leaks to Real-World Risk

1
Comments
5 min read
GitGuardian NHI Governance Now Gives More Comprehensive Visibility

GitGuardian NHI Governance Now Gives More Comprehensive Visibility

Comments
6 min read
Trivy's March Supply Chain Attack Shows Where Secret Exposure Hurts Most

Trivy's March Supply Chain Attack Shows Where Secret Exposure Hurts Most

1
Comments 1
5 min read
Top 10 Non-Human Identity Security Tools and Platforms for 2026

Top 10 Non-Human Identity Security Tools and Platforms for 2026

1
Comments
15 min read
Key Leaks, Vault Failures, and TEE Attacks: Highlights from RWC 2026

Key Leaks, Vault Failures, and TEE Attacks: Highlights from RWC 2026

Comments
5 min read
NHI Governance Is the Outcome. GitGuardian Is How You Get There

NHI Governance Is the Outcome. GitGuardian Is How You Get There

Comments
7 min read
Gartner IAM Summit 2026: Identity Expanded Faster Than Most Programs Did

Gartner IAM Summit 2026: Identity Expanded Faster Than Most Programs Did

Comments
9 min read
How We Migrated the Heart of Our Platform to Rust

How We Migrated the Heart of Our Platform to Rust

3
Comments
7 min read
Renovate & Dependabot: The New Malware Delivery System

Renovate & Dependabot: The New Malware Delivery System

Comments
8 min read
Leaked Kubernetes Secrets: Impact Assessment and Mitigation Strategies

Leaked Kubernetes Secrets: Impact Assessment and Mitigation Strategies

Comments
7 min read
GCSI 2026: AI Readiness in a City Built in Layers

GCSI 2026: AI Readiness in a City Built in Layers

Comments
7 min read
Mini Shai-Hulud: A persistent supply-chain worm

Mini Shai-Hulud: A persistent supply-chain worm

1
Comments 1
3 min read
AI Agents Security for Developers: Don't Let Your Agents Become a Liability

AI Agents Security for Developers: Don't Let Your Agents Become a Liability

1
Comments
9 min read
How We Got a CISA GitHub Leak Taken Down in Under a Day

How We Got a CISA GitHub Leak Taken Down in Under a Day

Comments
2 min read
The Future Of GitHub Actions Security And What You Can Do Right Now

The Future Of GitHub Actions Security And What You Can Do Right Now

Comments
6 min read
Vercel April 2026 Incident: Non-Sensitive Environment Variables Need Investigation Too

Vercel April 2026 Incident: Non-Sensitive Environment Variables Need Investigation Too

Comments
3 min read
The Bot Left a Fingerprint: Detecting and Attributing LLM-Generated Passwords

The Bot Left a Fingerprint: Detecting and Attributing LLM-Generated Passwords

1
Comments 1
5 min read
GitGuardian Now Flags Admin and Overprivileged Identities Across AWS, Entra, and Okta

GitGuardian Now Flags Admin and Overprivileged Identities Across AWS, Entra, and Okta

Comments
5 min read
Identity Access Management Strategy for Non-Human Identities

Identity Access Management Strategy for Non-Human Identities

2
Comments 1
6 min read
Top 11 Identity Orchestration Tools and Platforms for 2026

Top 11 Identity Orchestration Tools and Platforms for 2026

Comments
8 min read
API Keys Security & Secrets Management Best Practices

API Keys Security & Secrets Management Best Practices

Comments
8 min read
Local Guardrails for Secrets Security in the Age of AI Coding Assistants

Local Guardrails for Secrets Security in the Age of AI Coding Assistants

1
Comments
8 min read
Git Clean, Git Remove file from commit - Cheatsheet

Git Clean, Git Remove file from commit - Cheatsheet

Comments
15 min read
Short-Lived Credentials in Agentic Systems: A Practical Trade-off Guide

Short-Lived Credentials in Agentic Systems: A Practical Trade-off Guide

1
Comments 1
11 min read
No Off Season: Three Supply Chain Campaigns Hit npm, PyPI, and Docker Hub in 48 Hours

No Off Season: Three Supply Chain Campaigns Hit npm, PyPI, and Docker Hub in 48 Hours

Comments
3 min read
SnowFROC 2026: Secure Defaults, Real Trust, and a Better Layer on Top

SnowFROC 2026: Secure Defaults, Real Trust, and a Better Layer on Top

Comments
10 min read
ATLSECCON 2026: Context, Identity, and Restraint in Modern Security

ATLSECCON 2026: Context, Identity, and Restraint in Modern Security

Comments
8 min read
What the Mythos-Ready Briefing Says About Credentials

What the Mythos-Ready Briefing Says About Credentials

Comments
6 min read
AI Agents Authentication: How Autonomous Systems Prove Identity

AI Agents Authentication: How Autonomous Systems Prove Identity

1
Comments
17 min read
loading...