CVE-2025-30066 supply chain attack compromised tj-actions on March 14, 2025, exposing 218 repositories and leaking ...
The compromise of GitHub Action tj-actions/changed-files has impacted only a small percentage of the 23,000 projects using it ...
New versions of the Albabat ransomware target Windows, Linux, and macOS, and retrieve configuration files from GitHub.
Researchers have determined that Coinbase was the primary target in a recent GitHub Actions cascading supply chain attack ...
CISA confirms cascading attack from reviewdog to tj-actions exposed sensitive credentials across 23,000+ repositories.
CISA warns of CVE-2025-30066, a GitHub supply chain attack exposing secrets via compromised actions logs. Update ...
The endgame of the recent cascading supply chain attack on GitHub was to breach Coinbase, one of the world’s most popular ...
Researchers say compromised tool in the GitHub CI/CD environment stole credentials; infosec leaders need to act immediately.
More details have come to light on the recent supply chain attack targeting GitHub Actions, including its root cause.
Just a year after Alphabet was said to be trying to buy the security shop for a claimed $23 billion, Google Cloud says it has ...
Researchers from Palo Alto Networks said the hackers likely planned to leverage an open source project of the company for ...