Security Researchers Uncover Advanced Open Source Supply Chain Exploits A fresh threat report exposes an ongoing software...
CI/CD security
In a critical security alert for the PHP community, Nils Adermann, Co-Creator of Composer, has issued an...
A critical security vulnerability has been found in WebdriverIO, a popular open-source test automation framework used for...
The software supply chain has just weathered another high-impact assault. The Socket Threat Research team has uncovered...
A highly sophisticated software supply chain attack has compromised tens of thousands of developer workstations and CI/CD...
Security researchers at Socket have uncovered a coordinated software supply chain campaign orchestrated through the GitHub account...
Cybersecurity analysts at Darktrace have uncovered a new distributed denial-of-service (DDoS) botnet that specifically targets the video...
The Jenkins project has released a security advisory, addressing several vulnerabilities across its plugin ecosystem. The fixes...
Security researchers have sounded the alarm on a precision-targeted supply-chain compromise striking the SAP developer ecosystem. The...
A critical update has been issued for Gemini CLI (@google/gemini-cli) and the run-gemini-cli GitHub Action to address...
A new report from researchers at TrendMicro has exposed the evolution of Void Dokkaebi (also known as...
The PHP development community is facing a significant security risk following the disclosure of a critical argument...
Atlassian has issued a high-priority advisory for its Bamboo Data Center users, detailing a critical-severity security flaw...
The digital defenses of the European Union faced a significant test this March as a sophisticated supply-chain...
The Jenkins project has released a critical security advisory addressing multiple vulnerabilities that could lead to full...
Atlassian has sounded the alarm for users of its Bamboo Data Center, uncovering a high-severity Remote Code...
In a sophisticated supply chain manipulation, the xygeni-action GitHub Action was recently targeted by a critical “tag...
Christopher Robinson, Chief Technology Officer and Chief Security Architect at the Open Source Security Foundation (OpenSSF), has...
Maintainers of Jenkins, the world’s leading open-source automation server, have issued critical security updates to address two...
The maintainers of PHPUnit, the industry-standard testing framework for PHP, have released a critical security update to...