Cordyceps: Your GitHub Actions Workflows Are Executable Code — and Attackers Already Know It
Novee Security found 300+ fully exploitable CI/CD attack chains at Microsoft, Google, Apache, and Cloudflare. The root cause: treating workflow YAML as configuration instead of code.
Read Article