Github Actions Supply Chain Attacks episode artwork

EPISODE · Mar 31, 2025 · 42 MIN

Github Actions Supply Chain Attacks

from The 443 - Security Simplified · host Secplicity

This week, we discuss a recent cascading supply chain attack involving multiple Github actions workflows that nearly succeeded in compromising a popular Coinbase application. Before that, we discuss a novel way to download malware onto an endpoint by abusing a web browser's caching feature. Additionally, we cover an FBI alert on file converter malware scams.

This week, we discuss a recent cascading supply chain attack involving multiple Github actions workflows that nearly succeeded in compromising a popular Coinbase application. Before that, we discuss a novel way to download malware onto an endpoint by abusing a web browser's caching feature. Additionally, we cover an FBI alert on file converter malware scams.

NOW PLAYING

Github Actions Supply Chain Attacks

0:00 42:12

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

Frequently Asked Questions

How long is this episode of The 443 - Security Simplified?

This episode is 42 minutes long.

When was this The 443 - Security Simplified episode published?

This episode was published on March 31, 2025.

What is this episode about?

This week, we discuss a recent cascading supply chain attack involving multiple Github actions workflows that nearly succeeded in compromising a popular Coinbase application. Before that, we discuss a novel way to download malware onto an endpoint...

Can I download this The 443 - Security Simplified episode?

Yes, you can download this episode by clicking the download button on the episode player, or subscribe to the podcast in your preferred podcast app for automatic downloads.
URL copied to clipboard!