
Sign up to save your podcasts
Or
On today's episode of The Cybersecurity Defenders Podcast we are joined by security engineer Adnan Khan to talk about securing the build pipeline and explore some common vulnerabilities in enterprise Github configurations.
Organizations using GitHub Actions with self-hosted runners are at risk of attackers gaining an internal network foothold from the Internet if they compromise one developer’s personal GitHub access token. Key configuration adjustments can secure these pipelines and limit the damage from a breach.
Adnan's talk at BSidesSF: Securing the Pipeline: Protecting Self-Hosted HitHub Runners
The Cybersecurity Defenders Podcast: a show about cybersecurity and the people that defend the internet.
5
2424 ratings
On today's episode of The Cybersecurity Defenders Podcast we are joined by security engineer Adnan Khan to talk about securing the build pipeline and explore some common vulnerabilities in enterprise Github configurations.
Organizations using GitHub Actions with self-hosted runners are at risk of attackers gaining an internal network foothold from the Internet if they compromise one developer’s personal GitHub access token. Key configuration adjustments can secure these pipelines and limit the damage from a breach.
Adnan's talk at BSidesSF: Securing the Pipeline: Protecting Self-Hosted HitHub Runners
The Cybersecurity Defenders Podcast: a show about cybersecurity and the people that defend the internet.
364 Listeners
639 Listeners
370 Listeners
182 Listeners
1,013 Listeners
314 Listeners
408 Listeners
7,921 Listeners
163 Listeners
190 Listeners
311 Listeners
76 Listeners
128 Listeners
43 Listeners
168 Listeners