YoVDO

GitHub Actions - Vulnerabilities, Attacks, and Counter-measures

Offered By: NDC Conferences via YouTube

Tags

NDC Conferences Courses Cybersecurity Courses GitHub Actions Courses Cryptocurrency Mining Courses Vulnerability Management Courses

Course Description

Overview

Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only!
Explore the security implications of GitHub Actions in this comprehensive conference talk from NDC Security 2023. Dive deep into the vulnerabilities, potential attacks, and essential counter-measures associated with this popular continuous integration tool. Learn how GitHub Actions function and discover critical security measures to protect your workflows from misuse. Examine the risks of using GitHub-provided Runners and understand how attackers can exploit them for cryptocurrency mining and pivoting into other targets. Investigate the potential for malicious distribution of backdoors through the GitHub Actions Marketplace. Gain insights from detailed research on abuse case scenarios, including cryptocurrency mining and interactive command execution via reverse shell. Analyze the risks of third-party dependencies in the GitHub Actions ecosystem and learn how to safeguard your projects against supply-chain attacks. Equip yourself with the knowledge to secure your DevOps pipeline and mitigate potential threats in GitHub Actions.

Syllabus

GitHub Actions: Vulnerabilities, Attacks, and Counter-measures - Magno Logan - NDC Security 2023


Taught by

NDC Conferences

Related Courses

Health Informatics: Data and Interoperability Standards
Georgia Institute of Technology via edX
Fractal Architecture
NDC Conferences via YouTube
Strangling the Monolith - Applied Patterns & Practices from the Trenches
NDC Conferences via YouTube
Refactoring Is Not Just Clickbait
NDC Conferences via YouTube
Amazing Algorithms for Solving Problems in Software
NDC Conferences via YouTube