Exposed SpotBugs token caused GitHub supply chain intrusion, report finds

Exposed SpotBugs token caused GitHub supply chain intrusion, report finds More than 200 GitHub repositories had their secrets exposed in a supply chain attack against tj-actions/changed-files that was originally aimed at major U.S. cryptocurrency exchange Coinbase as a result of an exfiltrated SpotBugs workflow token, BleepingComputer reports.

Introduction to Malware Binary Triage (IMBT) Course

Looking to level up your skills? Get 10% off using coupon code: MWNEWS10 for any flavor.

Enroll Now and Save 10%: Coupon Code MWNEWS10

Note: Affiliate link – your enrollment helps support this platform at no extra cost to you.

Article Link: Exposed SpotBugs token caused GitHub supply chain intrusion, report finds | SC Media