#GitHub suffers a cascading supply chain attack compromising CI/CD secrets | InfoWorld
Notices tagged with github
-
Victorhck (victorhck@mastodon.social)'s status on Friday, 21-Mar-2025 04:00:25 UTC Victorhck
-
atareao 🦀🐍🐋🦭🐧 (atareao@mastodon.social)'s status on Thursday, 10-Oct-2024 08:00:05 UTC atareao 🦀🐍🐋🦭🐧
Crear miniaturas para YouTube con Inkscape n
Crear #miniaturas para #youtube con #inkscape y #jinrender de forma automatizada utiliando #jinja2 #rust y #bash con #github actionsEscucha: https://atareao.es/podcast/crear-miniaturas-para-youtube-con-inkscape/
Feed: https://atareao.es/mp3-feed/In conversation from mastodon.social permalink Attachments
-
atareao 🦀🐍🐋🦭🐧 (atareao@mastodon.social)'s status on Thursday, 05-Sep-2024 08:04:00 UTC atareao 🦀🐍🐋🦭🐧
GitHub Actions es brutal pero un Rabbit Hole n
Descubre cómo #GitHub Actions puede automatizar tus flujos de trabajo, desde publicar blogs y podcasts hasta gestionar versiones de softwareEscucha: https://atareao.es/podcast/github-actions-es-brutal-pero-otro-rabbit-hole/
Feed: https://atareao.es/mp3-feed/In conversation from mastodon.social permalink Attachments
-
Codeberg.org (codeberg@social.anoxinon.de)'s status on Monday, 01-Apr-2024 09:39:29 UTC Codeberg.org
If there was malicious code in a legitimate project hosted on #codeberg, would we remove access to it, including for security researchers?
Short: No!
We are considering how to prevent fetching malicious code by accident, though.
In any case, we are open to collaborating with security researchers. Interested? Help us build a malware hunting team: https://codeberg.org/Codeberg/Contributing/issues/44
Background: #GitHub locked access to source code of xz, which was background of active investigation from the community.
In conversation from social.anoxinon.de permalink Attachments
-
bertol ⁂ (bertol@mastodon.eus)'s status on Tuesday, 10-Oct-2023 17:39:17 UTC bertol ⁂
Sony Music, Universal Music eta Warner Music -ek yt-dl -ren webgunea itxitzea erabaki dute.
➡️ https://openjur.de/u/2466945.html
Programaren kodea oraindik https://github.com/yt-dlp/yt-dlp en aurki daiteke.
Ez dakit kodea ere ezabatu edo kenduko duten musika munduko munstroek; baina kodea jeisteko eta zabaltzeko aukera izanda, argi dago zer egin behar dugun 💪
In conversation from mastodon.eus permalink Attachments
-
Carlos Solís (csolisr@social.azkware.net)'s status on Monday, 19-Jun-2023 23:29:07 UTC Carlos Solís
By the way, if somebody could help me convert the installation script for #KBin to a @yunohost script, that'd be great. (Yes I know it's #GitHub but until the YNH team can put on the work to move elsewhere, I'll have to mirror) https://github.com/csolisr/kbin_ynh In conversation from social.azkware.net permalink Attachments
-
Aral Balkan (aral@mastodon.ar.al)'s status on Tuesday, 09-May-2023 17:27:50 UTC Aral Balkan
Github down? I hadn’t noticed.
Might be a good time to check out Codeberg.
Bonus: You can follow them on the fediverse at @Codeberg
In conversation from mastodon.ar.al permalink -
wuzzy@fosstodon.org's status on Tuesday, 04-Apr-2023 17:13:34 UTC Wuzzy
The #FOSS community at large needs to cure its addiction to #proprietary services like #GitHub, #Discord, #Steam, #Transifex and whatnot.
We can do better than this!
In conversation from fosstodon.org permalink -
Fedilab Apps (apps@toot.fedilab.app)'s status on Friday, 31-Mar-2023 19:10:11 UTC Fedilab Apps
#Twitter Recommendation Algorithm has been released on #Github
In conversation from toot.fedilab.app permalink Attachments
-
atareao 🦀🐍🐋🦭🐧 (atareao@mastodon.social)'s status on Monday, 27-Mar-2023 06:00:06 UTC atareao 🦀🐍🐋🦭🐧
Mi propio GitHub de la mano de Gitea n
Gitea es una alternativa a #GitHub que puedes auto hospedar en modo #selfhosted y con el que tendrás tu servicio de repositorios #git para #Linux y otrosEscucha: https://atareao.es/podcast/mi-propio-github-de-la-mano-de-gitea/
Feed: https://atareao.es/mp3-feed/In conversation from mastodon.social permalink Attachments
-
carlos (caarlos0@mastodon.social)'s status on Friday, 03-Mar-2023 14:44:59 UTC carlos
This is your gently reminder that, in YAML, 1.20 == 1.2, so if you want to use go 1.20, you'll need to put it between quotes.
In conversation from mastodon.social permalink Attachments
-
Eduardo Medina (edumedinalinux@mastodon.social)'s status on Friday, 30-Dec-2022 17:04:54 UTC Eduardo Medina
Lo que busca #Microsoft es una posición de alegalidad que le permita destruir el #SoftwareLibre desde dentro.
Urge ilegalizar a #GitHub #Copilot y herramientas similares que se dedican a violar licencias de software por sistema. https://spectrum.ieee.org/ai-code-generation-ownership
In conversation from mastodon.social permalink Attachments
-
Codeberg.org (codeberg@social.anoxinon.de)'s status on Thursday, 03-Nov-2022 10:09:23 UTC Codeberg.org
Are you a #GitHub or #GitLab (EE) user? Did you ever try to put your code on the side of liberty?
We might have an offer for you: https://Codeberg.org.
Run by a community-maintained non-profit, and funded by your donations!
Not the place you want to work on? Consider joining our missions by using a like-minded project. Learn about alternatives: https://docs.codeberg.org/getting-started/what-is-codeberg/#alternatives-to-codeberg
In conversation from social.anoxinon.de permalink Attachments
-
TugaTech (tugatech@mastodon.social)'s status on Wednesday, 02-Nov-2022 14:34:03 UTC TugaTech
Dropbox confirma roubo de código da empresa no #GitHub
👉 https://tugate.ch/wnptxx
...
#ataque #GithubIn conversation from mastodon.social permalink Attachments
-
Eduardo Medina (edumedinalinux@mastodon.social)'s status on Tuesday, 16-Aug-2022 22:39:53 UTC Eduardo Medina
Parece que #Microsoft está maniobrando desde hace meses para cerrar el framework #dotNET. Lo divertido del asunto es que esto está siendo denunciado por el propio Miguel de Icaza, quien trabaja para Microsoft (o al menos lo hacía hasta hace poco).
Cuidado, que lo siguiente será el secuestro de todo lo alojado en #GitHub. Avisados estáis. https://isdotnetopen.com/
In conversation from mastodon.social permalink Attachments
-
Ade Malsasa Akbar (ademalsasa@floss.social)'s status on Saturday, 06-Aug-2022 11:28:24 UTC Ade Malsasa Akbar
Have you ever heard of OneDev?
Think about GitLab, but smaller, simpler, lighter, with GUI and CI/CD all fits in a Docker container.
This can be an alternative to #Gitea for programmers who #GiveupGithub. Please boost if you are a programmer.
Further readings:
Introduction:
https://dzone.com/articles/introducing-onedev-new-open-source-git-serverSource code:
https://github.com/theonedev/onedevIn conversation from floss.social permalink Attachments
-
Piyush Chandwani :mastodon: (pichan@mastodon.social)'s status on Saturday, 06-Aug-2022 11:28:23 UTC Piyush Chandwani :mastodon:
@ademalsasa Never Heard of it tough I use #codeberg and have experience in using #github like services , But thanks I will definitely dig some information about it🙂.
In conversation from mastodon.social permalink -
Jan Wildeboer 😷:krulorange: (jwildeboer@social.wildeboer.net)'s status on Wednesday, 03-Aug-2022 08:11:35 UTC Jan Wildeboer 😷:krulorange:
Check your #Github Repos. Widespread malware attack uncovered, using this C&C host: https://github.com/search?l=YAML&q=ovz1.j19544519.pr46m.vps.myjino.ru&type=Code Context/details at https://twitter.com/stephenlacy/status/1554697077430505473?s=20&t=vpemJbO077kYmWPWS4kIqw
In conversation from social.wildeboer.net permalink Attachments
-
Geekland (geekland@mastodon.social)'s status on Tuesday, 19-Jul-2022 17:33:33 UTC Geekland
Migrar un repositorio git de GitHub a Codeberg #software_libre #codeberg #git #github #softwarelibre #tutorial https://victorhckinthefreeworld.com/2022/07/19/migrar-un-repositorio-git-de-github-a-codeberg/
In conversation from mastodon.social permalink Attachments
-
Bernie (codewiz@mstdn.io)'s status on Monday, 18-Jul-2022 00:38:11 UTC Bernie
@olamundo I'm hearing this a lot, but I'm skeptical that #GitHub's legal department wouldn't have thought about license compliance. Surely they will ingest only permissively-licensed code with no complications (attribution clauses, patent clauses...)
Do we have hard evidence of actual copyright infringement that would get them in trouble?
I mostly host on #GitLab, but I'd be happy to clone all my GPLv3 projects to GitHub if it helps get Microsoft sued 😃
In conversation from mstdn.io permalink