PhilipTheBucket@ponder.cat to Cybersecurity@sh.itjust.worksEnglish · 3 days agoGitHub supply chain attack spills secrets from 23K projectsgo.theregister.comexternal-linkmessage-square6fedilinkarrow-up137arrow-down12
arrow-up135arrow-down1external-linkGitHub supply chain attack spills secrets from 23K projectsgo.theregister.comPhilipTheBucket@ponder.cat to Cybersecurity@sh.itjust.worksEnglish · 3 days agomessage-square6fedilink
minus-squarePhilipTheBucket@ponder.catOPlinkfedilinkEnglisharrow-up12·3 days agoAs I understand it, the exploit was leaking the secrets from the place in the CI pipeline where they were supposed to be, into the public logs.
As I understand it, the exploit was leaking the secrets from the place in the CI pipeline where they were supposed to be, into the public logs.