chaospatterns@lemmy.world to Programming@programming.devEnglish · 7 months agoPopular GitHub Action tj-actions/changed-files is compromised with a payload that appears to attempt to dump secretssemgrep.devexternal-linkmessage-square3linkfedilinkarrow-up156arrow-down11
arrow-up155arrow-down1external-linkPopular GitHub Action tj-actions/changed-files is compromised with a payload that appears to attempt to dump secretssemgrep.devchaospatterns@lemmy.world to Programming@programming.devEnglish · 7 months agomessage-square3linkfedilink
minus-squareStripedMonkey@lemmy.ziplinkfedilinkarrow-up1·6 months ago2fa isn’t a panacea and won’t solve every problem. It does help though. Why do you think supply chain integrity isn’t something they care about?
2fa isn’t a panacea and won’t solve every problem. It does help though. Why do you think supply chain integrity isn’t something they care about?