According to the cybersecurity firms analyzing the incident, the attacker initially tried to compromise the Coinbase ...
CVE-2025-30066 supply chain attack compromised tj-actions on March 14, 2025, exposing 218 repositories and leaking ...
A new report showcases the 20 top-trending open source startups around the world, more than half of which are closely aligned ...
GitHub’s Product Security Engineering team secures the code behind GitHub by developing tools like CodeQL to detect and fix ...
The compromise of GitHub Action tj-actions/changed-files has impacted only a small percentage of the 23,000 projects using it ...
CISA confirms cascading attack from reviewdog to tj-actions exposed sensitive credentials across 23,000+ repositories.
Learn GitHub basics with this beginner's guide! Master repositories, branches, commits, and pull requests to streamline your ...
A compromise of the popular GitHub Actions tool turned into a massive supply chain attack, at this point thought to be ...
StepSecurity disclosed a compromise of the popular GitHub Action tj-actions/changed-files, which works to detect file changes ...
Researchers say compromised tool in the GitHub CI/CD environment stole credentials; infosec leaders need to act immediately.
In a new phishing campaign, GitHub developers are being targeted with fake “Security Alerts” where they are prompted to ...
Researchers have determined that Coinbase was the primary target in a recent GitHub Actions cascading supply chain attack ...