Loading…

Two third-party GitHub Actions previously compromised in a Mini Shai-Hulud campaign were re-enabled by their maintainer and remained accessible for more than a week despite still pointing to malicious code. [...]
To respect copyright, we link to the source rather than republishing the full text. Read the complete article on BleepingComputer.