Skip to main content
Scour
Discover
Docs
Login
Sign Up
You are offline. Trying to reconnect...
Copied to clipboard
Unable to share or copy to clipboard
Back to article
The GitHub Blog
5d
5 days ago
Safer pull_request_target defaults for GitHub Actions checkout
(opens in new tab)
Covers
2 stories
See all stories this covers
including
Keeping your GitHub Actions and workflows secure: Preventing pwn requests (2021)
Covered by
6 sources
See all sources covering this story
including
javascriptweekly.com
,
Andrew Nesbitt
Love
Like
Not for me
Save
|
|
Report
Off Topic
Harmful Content
Low Quality
Spam
Misleading
Duplicate
Wrong Language
Block
See related topics
Feeds
Share
Report
Off Topic
Harmful Content
Low Quality
Spam
Misleading
Duplicate
Wrong Language
Block Domain
Covers 2 related stories
securitylab.github.com
·
255w
255 weeks ago
Keeping your GitHub Actions and workflows secure: Preventing pwn requests (2021)
Discussed on
Hacker News
Love
Like
Not for me
Save
See related topics
Feeds
Share
Report
Off Topic
Harmful Content
Low Quality
Spam
Misleading
Duplicate
Wrong Language
Block Domain
Actions for Keeping your GitHub Actions and workflows secure: Preventing pwn requests (2021)
GitHub
·
54w
54 weeks ago
GitHub's checkout action is halting contributions
Discussed on
Hacker News
Love
Like
Not for me
Save
See related topics
Feeds
Share
Report
Off Topic
Harmful Content
Low Quality
Spam
Misleading
Duplicate
Wrong Language
Block Domain
Actions for GitHub's checkout action is halting contributions
Covered in 6 articles
javascriptweekly.com
·
22h
22 hours ago
Babel 8.0, Vite 8.1, and TypeScript 7.0 RC
Love
Like
Not for me
Save
See related topics
Feeds
Share
Report
Off Topic
Harmful Content
Low Quality
Spam
Misleading
Duplicate
Wrong Language
Block Domain
Actions for Babel 8.0, Vite 8.1, and TypeScript 7.0 RC
Andrew Nesbitt
·
3d
3 days ago
This Week in Package Management: 20 June 2026
Love
Like
Not for me
Save
See related topics
Feeds
Share
Report
Off Topic
Harmful Content
Low Quality
Spam
Misleading
Duplicate
Wrong Language
Block Domain
Actions for This Week in Package Management: 20 June 2026
InfoWorld
·
22h
22 hours ago
GitHub Actions hardens checkout security to block ‘pwn request’ attacks
Love
Like
Not for me
Save
See related topics
Feeds
Share
Report
Off Topic
Harmful Content
Low Quality
Spam
Misleading
Duplicate
Wrong Language
Block Domain
Actions for GitHub Actions hardens checkout security to block ‘pwn request’ attacks
The Hacker News
·
7h
7 hours ago
GitHub Updates actions/checkout to Block Common Pwn Request Attack Patterns
Love
Like
Not for me
Save
See related topics
Feeds
Share
Report
Off Topic
Harmful Content
Low Quality
Spam
Misleading
Duplicate
Wrong Language
Block Domain
Actions for GitHub Updates actions/checkout to Block Common Pwn Request Attack Patterns
Socket
·
3d
3 days ago
GitHub Actions Checkout Now Blocks Risky pull_request_target Checkouts
Love
Like
Not for me
Save
See related topics
Feeds
Share
Report
Off Topic
Harmful Content
Low Quality
Spam
Misleading
Duplicate
Wrong Language
Block Domain
Actions for GitHub Actions Checkout Now Blocks Risky pull_request_target Checkouts
CSO Online
·
22h
22 hours ago
GitHub Actions hardens checkout security to block ‘pwn request’ attacks
Love
Like
Not for me
Save
See related topics
Feeds
Share
Report
Off Topic
Harmful Content
Low Quality
Spam
Misleading
Duplicate
Wrong Language
Block Domain
Actions for GitHub Actions hardens checkout security to block ‘pwn request’ attacks
Keyboard Shortcuts
Navigation
Next / previous post
j
/
k
Open post
o
or
Enter
Preview post
v
Post Actions
Love post
a
Like post
l
Dislike post
d
Undo reaction
u
Save / unsave
s
Recommendations
Add interest / feed
Enter
Not interested
x
Go to
Home
g
h
Interests
g
i
Feeds
g
f
Likes
g
l
History
g
y
Changelog
g
c
Settings
g
s
Discover
g
b
Search
/
Pagination
Next page
n
Previous page
p
General
Show this help
?
Submit feedback
!
Close modal / unfocus
Esc
Press
?
anytime to show this help
Like
Save
Not for me
Report