pipeline
-
Blog
TSA failed to meet pipeline cybersecurity recommendations, says US government watchdog
The Transportation Security Administration (TSA), part of the US Department of Homeland Security (DHS), has been accused of failing to implement several key cybersecurity recommendations to improve the security of the transportation sector. A report from the US Government Accountability Office (GAO) criticized the TSA after it found four of the six cybersecurity recommendations it made to the agency in…
Read More » -
Blog
GitLab warns of critical arbitrary branch pipeline execution flaw
GitLab has released security updates to address multiple flaws in Community Edition (CE) and Enterprise Edition (EE), including a critical arbitrary branch pipeline execution flaw. The vulnerability, which is tracked as CVE-2024-9164, allows unauthorized users to trigger Continuous Integration/Continuous Delivery (CI/CD) pipelines on any branch of a repository. CI/CD pipelines are automated processes that perform tasks such as building, testing, and…
Read More »