Skip to main content
Scour
Discover
Docs
Login
Sign Up
Discover
About
Docs
Changelog
You are offline. Trying to reconnect...
Copied to clipboard
Unable to share or copy to clipboard
Back to article
securitylab.github.com
254w
254 weeks ago
Keeping your GitHub Actions and workflows secure: Preventing pwn requests (2021)
(opens in new tab)
Covered by
7 sources
See all sources covering this story
including
theregister
,
heise online
Discussed on
Hacker News
Love
Like
Not for me
Save
|
|
Report
Off Topic
Harmful Content
Low Quality
Spam
Misleading
Duplicate
Wrong Language
Block
Add to your feed
Feeds
Share
Report
Off Topic
Harmful Content
Low Quality
Spam
Misleading
Duplicate
Wrong Language
Block Domain
Covered in 7 articles
theregister
·
4w
4 weeks ago
TanStack weighs invitation-only pull requests after supply chain attack
Discussed on
Hacker News
Love
Like
Not for me
Save
Add to your feed
Feeds
Share
Report
Off Topic
Harmful Content
Low Quality
Spam
Misleading
Duplicate
Wrong Language
Block Domain
Actions for TanStack weighs invitation-only pull requests after supply chain attack
github.blog
·
2d
2 days ago
Safer pull_request_target defaults for GitHub Actions checkout
Love
Like
Not for me
Save
Add to your feed
Feeds
Share
Report
Off Topic
Harmful Content
Low Quality
Spam
Misleading
Duplicate
Wrong Language
Block Domain
Actions for Safer pull_request_target defaults for GitHub Actions checkout
Datadog Security Labs
·
2w
2 weeks ago
The case for GitHub Actions security after recent supply chain attacks
Love
Like
Not for me
Save
Add to your feed
Feeds
Share
Report
Off Topic
Harmful Content
Low Quality
Spam
Misleading
Duplicate
Wrong Language
Block Domain
Actions for The case for GitHub Actions security after recent supply chain attacks
neciudan.dev
·
4w
4 weeks ago
https://neciudan.dev/github-actions-poisoning
Discussed on
r/netsec
,
r/node
, and
r/programming
Love
Like
Not for me
Save
Add to your feed
Feeds
Share
Report
Off Topic
Harmful Content
Low Quality
Spam
Misleading
Duplicate
Wrong Language
Block Domain
Actions for https://neciudan.dev/github-actions-poisoning
cncf.io
·
2w
2 weeks ago
Securing CI/CD for an open source project: Controlling who runs what
Love
Like
Not for me
Save
Add to your feed
Feeds
Share
Report
Off Topic
Harmful Content
Low Quality
Spam
Misleading
Duplicate
Wrong Language
Block Domain
Actions for Securing CI/CD for an open source project: Controlling who runs what
In other languages
heise online
·
4w
4 weeks ago
Nach Cyberangriffen: TanStack prüft Einschränkungen für Pull-Requests
Love
Like
Not for me
Save
Add to your feed
Feeds
Share
Report
Off Topic
Harmful Content
Low Quality
Spam
Misleading
Duplicate
Wrong Language
Block Domain
Actions for Nach Cyberangriffen: TanStack prüft Einschränkungen für Pull-Requests
habr.com
·
4w
4 weeks ago
Безопасность GitHub Actions: модель угроз, атаки и меры защиты. Часть 1
Love
Like
Not for me
Save
Add to your feed
Feeds
Share
Report
Off Topic
Harmful Content
Low Quality
Spam
Misleading
Duplicate
Wrong Language
Block Domain
Actions for Безопасность GitHub Actions: модель угроз, атаки и меры защиты. Часть 1
Keyboard Shortcuts
Navigation
Next / previous post
j
/
k
Open post
o
or
Enter
Preview post
v
Post Actions
Love post
a
Like post
l
Dislike post
d
Undo reaction
u
Save / unsave
s
Recommendations
Add interest / feed
Enter
Not interested
x
Go to
Home
g
h
Interests
g
i
Feeds
g
f
Likes
g
l
History
g
y
Changelog
g
c
Settings
g
s
Discover
g
b
Search
/
Pagination
Next page
n
Previous page
p
General
Show this help
?
Submit feedback
!
Close modal / unfocus
Esc
Press
?
anytime to show this help
Like
Save
Not for me
Report