You are here |
johnstawinski.com | ||
| | | |
www.evasec.io
|
|
| | | | Multiple vulnerabilities affecting the CocoaPods ecosystem, have been discovered, posing a major risk of supply chain attacks. | |
| | | |
adnanthekhan.com
|
|
| | | | GitHub Actions caching has some insecure design decisions that allow for some unique attacks. It's considered working as intended, but there are many ways it can go wrong. Learn how I identified Actions cache poisoning vulnerabilities in a handful of open-source projects. | |
| | | |
www.sonarsource.com
|
|
| | | | We discovered 3 more code vulnerabilities in the popular GoCD CI/CD system that can be chained by attackers to leak or modify internal code. Learn more in this blog post. | |
| | | |
www.tvagile.com
|
|
| |