Media Summary: Ground Floor, 14:30 Wednesday After reviewing the build logs of public CI pipelines, I noticed More organizations are applying a DevOps methodology to optimize software development. One of the main tools used in this ... today I talk about a vulnerability I found in

Defending Github Actions Security Analysis - Detailed Analysis & Overview

Ground Floor, 14:30 Wednesday After reviewing the build logs of public CI pipelines, I noticed More organizations are applying a DevOps methodology to optimize software development. One of the main tools used in this ... today I talk about a vulnerability I found in William Woodruff discussed his project, Zizmor, a

Photo Gallery

Defending GitHub Actions: Security Analysis with GASA
GitHub Actions Security: From CI Nightmare to Supply Chain Sentinel - Niek Palm - NDC Manchester
Perform Security Code Analysis in GitHub with CodeQL and GitHub actions
GF - Actions have consequences: The overlooked Security Risks in 3rd party GitHub Actions
GitHub Actions: Vulnerabilities, Attacks, and Counter-measures - Magno Logan - NDC Security 2023
How to setup a GitHub Action Workflow to run CodeQL analysis on your code
BSidesBUD2022: Github Actions Security Landscape
Common Vulnerabilities in GitHub Actions - And How to Protect Against Them
github actions vulnerability or "why bug bounties are a scam" (intermediate) anthony explains #210
The GitHub Actions and Tomcat vulnerability emergencies that weren't
GitHub Advanced Security Certification – Pass the Exam!
Adopt a Security Mindset with GitHub Actions - Universe 2022
View Detailed Profile
Defending GitHub Actions: Security Analysis with GASA

Defending GitHub Actions: Security Analysis with GASA

I built a thing to help our #

GitHub Actions Security: From CI Nightmare to Supply Chain Sentinel - Niek Palm - NDC Manchester

GitHub Actions Security: From CI Nightmare to Supply Chain Sentinel - Niek Palm - NDC Manchester

Real-world incidents prove this urgent

Perform Security Code Analysis in GitHub with CodeQL and GitHub actions

Perform Security Code Analysis in GitHub with CodeQL and GitHub actions

Lets examine how simple is to use CodeQL

GF - Actions have consequences: The overlooked Security Risks in 3rd party GitHub Actions

GF - Actions have consequences: The overlooked Security Risks in 3rd party GitHub Actions

Ground Floor, 14:30 Wednesday After reviewing the build logs of public CI pipelines, I noticed

GitHub Actions: Vulnerabilities, Attacks, and Counter-measures - Magno Logan - NDC Security 2023

GitHub Actions: Vulnerabilities, Attacks, and Counter-measures - Magno Logan - NDC Security 2023

More organizations are applying a DevOps methodology to optimize software development. One of the main tools used in this ...

How to setup a GitHub Action Workflow to run CodeQL analysis on your code

How to setup a GitHub Action Workflow to run CodeQL analysis on your code

Learn how simple is to create a

BSidesBUD2022: Github Actions Security Landscape

BSidesBUD2022: Github Actions Security Landscape

Alex Ilgayev & Ilia Shkolyar -

Common Vulnerabilities in GitHub Actions - And How to Protect Against Them

Common Vulnerabilities in GitHub Actions - And How to Protect Against Them

GitHub Actions

github actions vulnerability or "why bug bounties are a scam" (intermediate) anthony explains #210

github actions vulnerability or "why bug bounties are a scam" (intermediate) anthony explains #210

today I talk about a vulnerability I found in

The GitHub Actions and Tomcat vulnerability emergencies that weren't

The GitHub Actions and Tomcat vulnerability emergencies that weren't

Summary

GitHub Advanced Security Certification – Pass the Exam!

GitHub Advanced Security Certification – Pass the Exam!

Learn what you need to know to pass the

Adopt a Security Mindset with GitHub Actions - Universe 2022

Adopt a Security Mindset with GitHub Actions - Universe 2022

Presented by: Stephanie Wong

Securing GitHub Actions with William Woodruff

Securing GitHub Actions with William Woodruff

William Woodruff discussed his project, Zizmor, a