HIGHSupply Chain
Verified
Global

GitHub Actions Supply Chain Attack Injects Malware Into CI/CD Pipelines

·Source: GitHub Security Advisory

Updated:

Executive Summary

Compromised GitHub Action used by 23,000+ repositories injects credential-stealing code into CI/CD pipelines. Broad exposure across enterprise repositories.

Analysis

A popular GitHub Action with 23,000+ repository users was compromised after the maintainer account was hijacked. The malicious version exfiltrates CI/CD secrets including cloud credentials, NPM tokens, and Docker registry passwords during pipeline execution. GitHub has revoked the compromised versions and is notifying affected organizations. The incident highlights ongoing risks in CI/CD supply chain security.

Timeline

Discovered
Mar 2, 2026
Published
Mar 2, 2026
Source Attribution

Originally published by GitHub Security Advisory on Mar 2, 2026. Verified by: GitHub, CISA.

Related Threats

HIGHSupply Chain

OpenAI president’s blog pushing agentic AI most notable for what it did not say

OpenAI president Greg Brockman on Sunday warned enterprise CISOs that they need to more aggressively embrace agents if they want to survive upcoming cyberattacks. Brockman said in a blog post that it has become “increasingly clear” that company systems are hiding “significant flaws, and defenders need to find and fix them before attackers do.” He added: “The Hugging Face incident showed that we un

CSO Online
MEDIUMSupply Chain

US FCC Weighs Chinese Transceiver Supply-Chain Crackdown

<img src="https://ismg-cdn.nyc3.cdn.digitaloceanspaces.com/articles/us-fcc-weighs-chinese-transceiver-supply-chain-crackdown-image_small-2-a-32584.jpg" align=right hspace=4><b>Draft Covered List Expansion Would Reach Components Inside AI Data Center Switches</b><br>The U.S. FCC reportedly may restrict imports of new-model optical transceivers made in China, a move that would reach AI data center i

Bank Info Security
CRITICALSupply Chain

What the CISO role will look like in 2029

Wolfgang Goerlich has spent his career in security and has been a CISO for the past seven years. Like many long-term security execs, Goerlich has seen plenty of changes within the profession. He’s bracing for more. “For the future I see growing the role of CISO to be the pacesetter for innovation, to be in the board room and executive conversations advising them on how to take smart, calculated ri

CSO Online