← Back to feed
general GBHackers

GitLab Email Token Lets Attackers Push Code to Main and Execute CI/CD Jobs

GBHackers GitLab

A long-lived GitLab incoming email token embedded in project email addresses for the “Email work item” feature can be exploited to push attacker-controlled c...

Read the full story GBHackers →

Related Coverage

general New Galago Ransomware Operation Emerges With Links to Panzer Extortion Group GBHackers · Sep 24 general CLOSEDQUORUM, the malware that asks four AI models what to do next Security Affairs · Sep 24