National Cyber Warfare Foundation (NCWF)

Cordyceps CI CD Flaws Expose 300+ GitHub Repositories to Supply-Chain Attacks


0 user ratings
2026-06-24 13:43:15
milo
Blue Team (CND)
Cybersecurity researchers have flagged a new class of CI/CD workflow weakness that allows attackers to hijack workflows and compromise open-source supply chains.

The "critical exploitable pattern" has been codenamed Cordyceps by Novee Security. The issue can allow full attacker control of repositories at dozens of the largest organizations worldwide, including Microsoft, Google, Apache, and



Source: TheHackerNews
Source Link: https://thehackernews.com/2026/06/cordyceps-cicd-flaws-expose-300-github.html


Comments
new comment
Nobody has commented yet. Will you be the first?
 
Forum
Blue Team (CND)



Copyright 2012 through 2026 - National Cyber Warfare Foundation - All rights reserved worldwide.