Bookmark and Share

Vox - All

The spiritual laws of success and the future of technology

Friday, April 15, 2022

GitHub says an attacker used stolen OAuth user tokens issued to Heroku and Travis-CI to download data from private repositories belonging to npm and other orgs (Sergiu Gatlan/BleepingComputer)

Sergiu Gatlan / BleepingComputer:
GitHub says an attacker used stolen OAuth user tokens issued to Heroku and Travis-CI to download data from private repositories belonging to npm and other orgs  —  GitHub revealed today that an attacker is using stolen user tokens (issued to Heroku and Travis-CI OAuth) to download data from private repositories.



from Techmeme https://ift.tt/ZFDNrLz
via IFTTT

Sphere: Related Content

No comments:

Techmeme

Labels