Skip to content

Add article: 12 Steps to Secure GitHub Actions After the Trivy Attack#4

Open
gebalamariusz wants to merge 1 commit into
johnbillion:trunkfrom
gebalamariusz:add-trivy-attack-article
Open

Add article: 12 Steps to Secure GitHub Actions After the Trivy Attack#4
gebalamariusz wants to merge 1 commit into
johnbillion:trunkfrom
gebalamariusz:add-trivy-attack-article

Conversation

@gebalamariusz
Copy link
Copy Markdown

Adds a link to the Unofficial resources section:

The article provides an actionable 12-step checklist for hardening GitHub Actions workflows, written in response to the Trivy/aquasecurity supply chain compromise. It covers topics already represented in this list (pinning, scanning, OIDC) but ties them together into a single post-incident hardening guide.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant