← Home
#python
3 stories tagged.
The Comment That Poisoned a Million Pipelines: elementary-data's GitHub Actions Script Injection and the Rise of CI-Native Supply Chain Attacks
10 min · 0 sources
The Pipeline Is the Weapon: How elementary-data's GitHub Actions Injection Turned 1.1 Million PyPI Installs Into a Credential Vacuum
11 min · 0 sources
Ten Hours to Zero: How CVE-2026-39987 Turned Every Exposed Marimo Notebook Into a Blockchain Botnet Node
10 min · 0 sources