
The latest supply chain attack has taken the technology world by storm, impacting a vast array of open-source projects on GitHub. A malicious actor managed to compromise GitHub Actions, initially directing their efforts toward Coinbase’s projects before broadening their focus to exploit an astonishing 218 repositories. The attack leverages the public CI/CD flow of the agentkit project, aiming to gather