Information security
fromDevOps.com
2 days agoWidespread Mini Shai-Hulud Campaign Is a Matter of Trust - DevOps.com
Shai-Hulud attacks evolve into supply-chain playbooks that abuse trusted CI/CD publishing paths and OIDC tokens to deliver malicious packages with valid provenance.