Poisoned Pipeline in Google’s Gemini-CLI: workflow_run PPE (opens in new tab)
How attacker-controlled artifact data flows into a privileged GitHub Actions context and exposes GEMINI_API_KEY — found via Google OSS VRP.
Read the original articleHow attacker-controlled artifact data flows into a privileged GitHub Actions context and exposes GEMINI_API_KEY — found via Google OSS VRP.
Read the original article