GitHub Actions security enforcement went live today: actions/checkout now refuses by default to execute untrusted fork code ...
Weak security controls around the use of public GitHub code repositories allowed a contractor for the Cybersecurity and ...
ActiveState explains how GitHub Actions attack chains can evade traditional CI security scanners, why passing a scan doesn't ...
Multiple high-profile open-source projects, including those from Google, Microsoft, AWS, and Red Hat, were found to leak GitHub authentication tokens through GitHub Actions artifacts in CI/CD ...
Researchers have uncovered a sustained campaign using GitHub's public APIs and ghost accounts to profile enterprise software ...
The open source funding problem is very real, but a slew of initiatives have emerged of late, with startups, corporations, and venture capitalists launching various programs to support some of the ...
Some results have been hidden because they may be inaccessible to you
Show inaccessible results