Login
From:
Adnan Khan's Blog
(Uncensored)
subscribe
An Obscure Actions Workflow Vulnerability in Google’s Flank – Adnan Khan's Blog
https://adnanthekhan.com/2024/04/15/an-obscure-actions-workflow-vulnerability-in-googles-flank/
links
backlinks
Tagged with:
github
cicd
bug-bounty
supplychain
Learn about how I used a custom tool to find a Google-owned repository vulnerable to GitHub Actions Poisoned Pipeline Execution Attack and earned a $7,500 bug bounty!
Roast topics
Find topics
Find it!