Overview
News
Technologies
Salaries
Products
People
Growth
Financials
Overview
Security research blog focusing on CI/CD security, software supply chain attacks, and developer tooling vulnerabilities.
News
A GitHub Issue Title Compromised 4,000 Developer Machines
A prompt injection in a GitHub issue triggered a chain reaction that ended with 4,000 developers getting OpenClaw installed without consent. The attack composes well-understood vulnerabilities into something new: one AI tool bootstrapping another.
Read more
Report
Turning Almost Nothing into a Supply Chain Compromise of Angular with GitHub Actions Cache Poisoning
Turning Almost Nothing into a Supply Chain Compromise of Angular with GitHub Actions Cache Poisoning - Security research by adnanthekhan
Read more
Report
Clinejection - Compromising Cline's Production Releases just by Prompting an Issue Triager
Clinejection - Compromising Cline
Read more
Report
Copilot or Coconspirator - Tricking GitHub Copilot and Stealing all Your Secrets
Copilot or Coconspirator - Tricking GitHub Copilot and Stealing all Your Secrets - Security research by adnanthekhan
Read more
Report
Pro access
Upgrade to see all 17 mentions
Upgrade to a paid plan to read every media mention of this company - funding news, awards, product launches and press releases from all the outlets writing about it.
Every media mention and press release
Funding news, awards and product launches
Fresh coverage from every outlet writing about the company
Upgrade now
Cancel anytime. Secure checkout. Instant activation.
