X

Vous n'êtes pas connecté

Rubriques :

Maroc Maroc - ITSECURITYNEWS.INFO - A La Une - 19/Mar 08:36

CISA Warns of Supply-Chain Attack Exploiting GitHub Action Vulnerability

The Cybersecurity and Infrastructure Security Agency (CISA) has sounded the alarm over a critical supply-chain attack affecting a widely used third-party GitHub Action: tj-actions/changed-files. This action, exploited under CVE-2025-30066, is designed to identify changes in files during pull requests or…

Articles similaires

Sorry! Image not available at this time

GitHub Supply Chain Attack Raises Awareness Across The Cybersecurity Community

itsecuritynews.info - 21/Mar 16:34

The recent GitHub software supply chain attack has exposed up to 23,000 repositories, which now has CISA sounding the alarm. The vulnerability is...

Sorry! Image not available at this time

Coinbase Initially Targeted in GitHub Actions Supply Chain Attack; 218 Repositories’ CI/CD Secrets Exposed

itsecuritynews.info - 23/Mar 07:34

The supply chain attack involving the GitHub Action “tj-actions/changed-files” started as a highly-targeted attack against one of Coinbase’s...

Sorry! Image not available at this time

Coinbase Initially Targeted in GitHub Actions Supply Chain Attack; 218 Repositories’ CI/CD Secrets Exposed

itsecuritynews.info - 23/Mar 07:34

The supply chain attack involving the GitHub Action “tj-actions/changed-files” started as a highly-targeted attack against one of Coinbase’s...

Sorry! Image not available at this time

GitHub Supply Chain Breach: Coinbase Attack Exposes 218 Repositories, Leaks CI/CD Secrets

itsecuritynews.info - 23/Mar 06:08

The supply chain attack involving the GitHub Action “tj-actions/changed-files” started as a highly-targeted attack against one of Coinbase’s...

Sorry! Image not available at this time

GitHub Supply Chain Breach: Coinbase Attack Exposes 218 Repositories, Leaks CI/CD Secrets

itsecuritynews.info - 23/Mar 06:08

The supply chain attack involving the GitHub Action “tj-actions/changed-files” started as a highly-targeted attack against one of Coinbase’s...

Sorry! Image not available at this time

GitHub Action supply chain attack exposed secrets in 218 repos

bleepingcomputer.com - 20/Mar 14:34

The compromise of GitHub Action tj-actions/changed-files has impacted only a small percentage of the 23,000 projects using it, with it estimated that...

Sorry! Image not available at this time

U.S. CISA adds Sitecore CMS and XP, and GitHub Action flaws to its Known Exploited Vulnerabilities catalog

securityaffairs.co - 27/Mar 12:30

U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Sitecore CMS and XP, and GitHub Action flaws to its Known Exploited Vulnerabilities...

Sorry! Image not available at this time

CISA KEV Catalog Update Part VII – March 2025

thecyberthrone.in - 20/Mar 10:26

The Cybersecurity and Infrastructure Security Agency (CISA) has added three critical vulnerabilities affecting Nakivo Backup & Replication, SAP...

Sorry! Image not available at this time

CISA KEV Catalog Update Part VII – March 2025

thecyberthrone.in - 20/Mar 10:26

The Cybersecurity and Infrastructure Security Agency (CISA) has added three critical vulnerabilities affecting Nakivo Backup & Replication, SAP...

Sorry! Image not available at this time

U.S. CISA adds Google Chromium Mojo flaw to its Known Exploited Vulnerabilities catalog

securityaffairs.co - 27/Mar 23:02

U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Google Chromium Mojo flaw to its Known Exploited Vulnerabilities catalog. The U.S....