GitHub has added support for securing SSH Git operations using FIDO2 security keys for added protection from account takeover attempts. Researchers at North Carolina State University...
GitHub Actions is currently being abused by attackers to mine cryptocurrency using GitHub’s servers in an automated attack. GitHub Actions is a CI/CD solution that makes it easy to...
GitHub Arctic Code Vault has likely captured sensitive patient medical records from multiple healthcare facilities in a data leak attributed to MedData. The private data was leaked on GitHub...
A security vulnerability that allowed attackers to disclose Actions secrets in GitHub repositories has been patched, and the researcher who discovered the bug was awarded $25,000. On March...
GitHub has released further details of a rare security vulnerability that potentially allowed users to log into other user sessions. Last week, as reported by The Daily Swig,...
A security researcher was able to add a counterfeit test package to the official list of Microsoft Azure SDK latest releases. The simple trick if abused by...
A dropper has been discovered spreading via Google Play Store to deliver financial trojans. Dubbed Clast82, the dropper was found spreading AlienBot Banker and MRAT trojans...
GitHub users were forcibly signed out of their accounts yesterday (March 8) to protect against a security bug that could have exposed a user’s session cookies....
Last night, GitHub automatically logged out many users by invalidating their GitHub.com sessions to protect user accounts against a potentially serious security vulnerability. Earlier this month GitHub had received a report of anomalous behavior...
Security expert spotted a new piece of malware that leverages weaponized Word documents to download a PowerShell script from GitHub. Security expert discovered a new piece of...
Recent Comments