'Cordyceps': Mushrooming Malicious Pull Requests Threaten Developer Workflows
Dark Reading·
Originalartikel lesen bei Dark ReadingThe CI/CD workflow weakness affects Microsoft's Azure Sentinel, Google's AI Agent Development Kit, Apache's Doris analytics database, Cloudflare's Workers SDK, and Python Software Foundation's Black.
MITRE ATT&CK Kill Chain (2 Techniken)
Reconnaissance
Execution