How to keep your app's secrets, secret
July 21, 2025
41 min
Free
android
security
api-keys
secrets-management
reverse-engineering
gradle-plugin
git-leaks
bfg
git-filter-repo
firebase
aws
obfuscation
https
device-attestation
Description
This talk by Ed Holloway-George explores how to keep your app's secrets secure. It covers common vulnerabilities, best practices for managing secrets in codebases, techniques for detecting and removing leaked secrets from version control, and strategies for obfuscating and protecting sensitive information within the app itself. The presentation also touches on architectural patterns like using proxy servers and device attestation to enhance security.