Researchers claim primary target of a recent cascading supply chain attack was Coinbase The cryptocurrency exchange was not ...
According to the cybersecurity firms analyzing the incident, the attacker initially tried to compromise the Coinbase ...
CVE-2025-30066 supply chain attack compromised tj-actions on March 14, 2025, exposing 218 repositories and leaking credentials.
A potential supply chain attack on GitHub CodeQL started simply: a publicly exposed secret, valid for 1.022 seconds at a time. In that second, an attacker could take a series of steps that would allow ...
CISA confirms cascading attack from reviewdog to tj-actions exposed sensitive credentials across 23,000+ repositories.
The GitHub Action supply chain compromise that threatened the security of more than 23,000 repositories appears to be linked ...
The compromise of GitHub Action tj-actions/changed-files has impacted only a small percentage of the 23,000 projects using it ...
The re-issuance of the 70 billion CRO tokens “permanently” burned in 2021 is “no different from a scam,” according to onchain ...
StepSecurity disclosed a compromise of the popular GitHub Action tj-actions/changed-files, which works to detect file changes ...
Researchers have determined that Coinbase was the primary target in a recent GitHub Actions cascading supply chain attack ...
More details have come to light on the recent supply chain attack targeting GitHub Actions, including its root cause.
Open source software used by more than 23,000 organizations, some of them in large enterprises, was compromised with ...