2024 State of Secrets Report

Do you know where your secrets are sprawled across the cloud? If you're like most organizations, there are probably some passwords and API keys that have slipped through the cracks. However, our latest "State of Secrets" report is here to give you an idea of where your secrets may be hiding—as well as how you can better secure them.

Download the report

Download the full report to uncover the extent of secret sprawl in your environment and discover effective strategies to mitigate secret-related risks.

Key insights at a glance

Enterprises need a data leak prevention (DLP) platform that can secure their sensitive data at scale.
Nightfall for SaaS

Compromised secrets are a leading threat

In 2024, compromised secrets are responsible for 16% of all data breaches, making them a primary attack vector. And with the average data breach costing $4.88 million, the stakes are high.

Nighfall for data at rest

Secrets sprawl is more pervasive than ever

Over the past year, Nightfall discovered more than 171,000 secrets across popular SaaS and GenAI apps. This includes 8 passwords and 7 API keys per 100 employees each week—leading to potentially thousands of exposed secrets each year at an enterprise level.

Nightfall for ChatGPT

Active API keys pose significant risks for privilege escalation attacks

API keys were detected across a slew of SaaS apps, including GitHub, Slack, Google Drive, and more.