Overview
News
Technologies
Salaries
Products
People
Growth
Financials

Overview

Security research blog focusing on CI/CD security, software supply chain attacks, and developer tooling vulnerabilities.

News

News GrithAI 6 months ago
A GitHub Issue Title Compromised 4,000 Developer Machines
A prompt injection in a GitHub issue triggered a chain reaction that ended with 4,000 developers getting OpenClaw installed without consent. The attack composes well-understood vulnerabilities into something new: one AI tool bootstrapping another.
Read more
Report
Blog 6 months ago
Turning Almost Nothing into a Supply Chain Compromise of Angular with GitHub Actions Cache Poisoning
Turning Almost Nothing into a Supply Chain Compromise of Angular with GitHub Actions Cache Poisoning - Security research by adnanthekhan
Read more
Report
Blog 8 months ago
Copilot or Coconspirator - Tricking GitHub Copilot and Stealing all Your Secrets
Copilot or Coconspirator - Tricking GitHub Copilot and Stealing all Your Secrets - Security research by adnanthekhan
Read more
Report
Pro access
Upgrade to see all 17 mentions
Upgrade to a paid plan to read every media mention of this company - funding news, awards, product launches and press releases from all the outlets writing about it.
Every media mention and press release
Funding news, awards and product launches
Fresh coverage from every outlet writing about the company
Upgrade now
Cancel anytime. Secure checkout. Instant activation.