Secure Bulletin Navigating the cyber sea with knowledge
Home > Tag > CI/CD security
#CI/CD security

GhostAction Hijacks 346 GitHub Repositories to Harvest CI/CD Secrets

10 October 2026  |  dark6  |  Cybercrime

The GhostAction campaign used compromised maintainer accounts to inject credential-stealing GitHub Actions workflows into 346 repositories. The malicious automation collected CI/CD secrets and searched full Git histories, creating...

>> read more

GitLab’s Email-to-Issue Feature Can Be Hijacked to Commit Code as Any User

24 September 2026  |  dark6  |  Vulnerability

Researchers at Aikido Security found that GitLab’s incoming-email work-item feature relies on a long-lived, non-expiring token that, if exposed, lets an attacker submit merge requests and land commits...

>> read more

AI-Assisted Intruder Reaches Enterprise Root Access in Less Than 10 Hours

8 September 2026  |  dark6  |  AI

An attacker reportedly used frontier models and agentic frameworks to compress a complex enterprise intrusion into less than ten hours. The incident shows how exposed services, embedded secrets...

>> read more

Unauthenticated RCE Flaw in JetBrains TeamCity Puts Software Supply Chains at Risk

1 August 2026  |  dark6  |  Vulnerability

JetBrains has patched a critical, unauthenticated remote code execution flaw (CVE-2026-63077) in TeamCity On-Premises that could let attackers hijack build servers and tamper with software releases. Administrators are...

>> read more

Microsoft Warns: Claude Code GitHub Action Exploitable via Prompt Injection to Leak CI/CD Secrets

8 June 2026  |  dark6  |  Vulnerability

Microsoft Threat Intelligence disclosed a prompt injection flaw in the Claude Code GitHub Action that allowed attackers to access /proc/self/environ and steal API keys from CI/CD runners. Anthropic...

>> read more