minus-squareThinker@lemmy.worldtoProgramming@programming.dev•Malicious code injection by compromised pull request branch nameslinkfedilinkarrow-up1·7 days agoDing ding ding! We have a winner! It’s a third-party GitHub Action that is passing the branch name directly to Bash. So to be clear, not GitHub’s fault. linkfedilink
Thinker@lemmy.world to Hermitcraft@lemmy.world · 8 months agoHermitcraft Auction in support of Gamers Outreach is now live!!plus-squaretiltify.comexternal-linkmessage-square0fedilinkarrow-up11arrow-down10
arrow-up11arrow-down1external-linkHermitcraft Auction in support of Gamers Outreach is now live!!plus-squaretiltify.comThinker@lemmy.world to Hermitcraft@lemmy.world · 8 months agomessage-square0fedilink
Thinker@lemmy.world to Experienced Devs@programming.dev · 1 year agoIntentional Code - Minimalism in a World of Dogmatic Design - David Whitney - NDC London 2023youtu.beexternal-linkmessage-square0fedilinkarrow-up11arrow-down10
arrow-up11arrow-down1external-linkIntentional Code - Minimalism in a World of Dogmatic Design - David Whitney - NDC London 2023youtu.beThinker@lemmy.world to Experienced Devs@programming.dev · 1 year agomessage-square0fedilink
Ding ding ding! We have a winner!
It’s a third-party GitHub Action that is passing the branch name directly to Bash. So to be clear, not GitHub’s fault.