GitHub Actions Compromised to Exfiltrate CI/CD Credentials
Threat actors hijacked a popular GitHub Actions workflow, redirecting all tags to an imposter commit to harvest CI/CD credentials. Review CI workflows and revoke compromised tokens.

Loading
§Topic · APT & Threat Actors
Nation-state threat actors, APT groups, and targeted campaigns by advanced persistent adversaries.
All dispatchesState-sponsored actors chain CVEs to backdoor FXOS/ASA devices; FIRESTARTER persists after patches.
Get these articles delivered to your inbox.
Subscribe free