‘Cordyceps’: Mushrooming Malicious Pull Requests Threaten Developer Workflows

‘Cordyceps’: Mushrooming Malicious Pull Requests Threaten Developer Workflows











The CI/CD workflow weakness affects Microsoft’s Azure Sentinel, Google’s AI Agent Development Kit, Apache’s Doris analytics database, Cloudflare’s Workers SDK, and Python Software Foundation’s Black.






Alexander Culafi





Go to gbhackers.com





Posted

in

by

Tags: