writeups.xyz writeups.xyz / Asi Greenholts (@TupleType)

Title Vulnerabilities Programs Authors
The GitHub Actions Worm: Compromising GitHub Repositories Through the Actions Dependency Tree
How we Abused Repository Webhooks to Access Internal CI Systems at Scale