682 - Vuln no GitHub Actions permite adulterar pacote no PyPI episode artwork

EPISODE · Dec 9, 2024 · 4 MIN

682 - Vuln no GitHub Actions permite adulterar pacote no PyPI

from Cyber Morning Call · host Tempest Security Intelligence

[Referências do Episódio] Compromised ultralytics PyPI package delivers crypto coinminer - https://www.reversinglabs.com/blog/compromised-ultralytics-pypi-package-delivers-crypto-coinminer  Compromising OpenWrt Supply Chain via Truncated SHA-256 Collision and Command Injection - https://flatt.tech/research/posts/compromising-openwrt-supply-chain-sha256-collision/  URL File NTLM Hash Disclosure Vulnerability (0day) - and Free Micropatches for it - https://blog.0patch.com/2024/12/url-file-ntlm-hash-disclosure.html  New Windows zero-day exposes NTLM credentials, gets unofficial patch - https://www.bleepingcomputer.com/news/security/new-windows-zero-day-exposes-ntlm-credentials-gets-unofficial-patch/  Roteiro e apresentação: Carlos Cabral e Bianca Oliveira Edição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

Episode metadata supplied by the publisher feed · Published Dec 9, 2024

Embed this episode

NOW PLAYING

682 - Vuln no GitHub Actions permite adulterar pacote no PyPI

0:00 4:01

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

No similar episodes found.

Frequently Asked Questions

How long is this episode of Cyber Morning Call?

This episode is 4 minutes long.

When was this Cyber Morning Call episode published?

This episode was published on December 9, 2024.

Can I download this Cyber Morning Call episode?

Yes. Use the download control on the episode player to save the publisher-provided media file.
URL copied to clipboard!