GitHub takes aim at software supply chain securityArtifact Attestations in GitHub Actions workflows based on Sigstore enhance software integrity and security.
GitLab Fixes Security Flaw That Lets Attackers Run Pipeline Jobs - DevOps.comGitLab urges immediate upgrade to fix critical security flaw allowing malicious pipeline execution.