varunsharma07
- Karma
- 189
- Created
- 4 years ago
About
Founder of StepSecurity (https://www.stepsecurity.io)Recent Submissions
- 1. ▲ Hundreds of GitHub Python Repos Compromised via Account Takeover and Force-Push (stepsecurity.io)
- 2. ▲ Show HN: Scan your dev machine for AI agents, MCP servers, and IDE extensions (github.com)
- 3. ▲ Xygeni/xygeni-action GitHub Action is compromised – poisoned tag is still live (stepsecurity.io)
- 4. ▲ Hackerbot-Claw: AI Bot Exploiting GitHub Actions – Microsoft, Datadog Hit So Far (stepsecurity.io)
- 5. ▲ GitHub Actions is left vulnerable to supply chain attacks: Datadog Report (datadoghq.com)
- 6. ▲ Cline Supply Chain Attack: Cline 2.3.0 Silently Installs OpenClaw (stepsecurity.io)
- 7. ▲ Harden Runner Detected the SHA1-Hulud Supply Chain Attack in CNCF's Backstage (stepsecurity.io)
- 8. ▲ Popular Nx Build System NPM Package Compromised with Data Stealing Malware (stepsecurity.io)
- 9. ▲ Suspicious Tag Change in AWS's GitHub Action: What Happened and Why It Matters (stepsecurity.io)
- 10. ▲ Num2words PyPI Package Compromised (stepsecurity.io)