GhostAction Attack Steals 3,325 Secrets from 327 GitHub Accounts
A significant supplychain attack known as "GhostAction" gained access to 327 GitHub accounts and stole 3,325 secrets, including GitHub credentials, AW
A significant supplychain attack known as "GhostAction" gained access to 327 GitHub accounts and stole 3,325 secrets, including GitHub credentials, AWS keys, and PyPI tokens. After a fraudulent GitHub Actions workflow was introduced into the FastUUID project, security firm GitGuardian found the compromise. The method was utilised by the attacker to steal confidential information from Cloudflare, DockerHub, and npm. Many impacted repositories undid the changes after GitHub was notified and the campaign was shut down. "S1ngularity," a different npm assault, affected 2,000 accounts but was judged unrelated. GitGuardian alerted users by creating bugs in compromised repositories. The incident emphasises the growing risks to opensource ecosystems and the pressing need for proactive monitoring and more robust CI/CD pipeline security.
Read More..
B2B Tech News | 8 days ago