GitHub Leak Puts Software Supply Chains at Risk: Thousands of Secrets Exposed

Over 23,000 organizations may be at risk following a supply chain attack affecting tj-actions/changed-files GitHub Action, say researchers at StepSecurity.    GitHub Actions is a CI/CD service that allows developers to automate software builds and testing. Workflows run in response to specific events, such as committing new code to a repository. With adoption in over 23,000 […]

This article has been indexed from Information Security Buzz

Read the original article: