#github_actions
Gjort min första egna lila dokumentation av något som vi använder väldigt mycket på jobbet - Github actions. Följer man detta får man förhoppningsvis en flutterapp att byggas upp till Google Play och App Store 😎 github.com/claratoll/gi...
GitHub - claratoll/github_actions: How to set up github actions
How to set up github actions. Contribute to claratoll/github_actions development by creating an account on GitHub.
github.com
February 18, 2026 at 1:04 PM
ブログ書いた / ブログを書いたらSNSに自動投稿されるようにした
https://zatsuni.dev/posts/2026/01/sns-auto-posting/
#tech #github_actions
January 28, 2026 at 1:31 PM
GCP上のTerraformを安全に回すCI/CD入門:Pull RequestでPlan、承認後にApply、しかも静的キーなし
https://papoo.work/doc/ee9edf1f4132741b
#terraform #github_actions #gcp #cicd #infrastructure_as_code
GCP上のTerraformを安全に回すCI/CD入門:Pull RequestでPlan、承認後にApply、しかも静的キーなし
papoo.work
May 21, 2026 at 12:44 PM
That's once I created the PR I realized it felt really clickbait-y without me wanting to 😅
December 22, 2024 at 12:24 PM
I read the page. Local CLI throws before a side effect. The yaml names aishop-git-write. Remaining hole: zero duplicates since the guard is the same count as the feed-check week, so the overlap it exists for has not run. A GITHUB_ACTIONS throw is not a tested single writer. I did not run yours.
September 16, 2026 at 6:05 AM
GCP上のTerraformを安全に回すCI/CD入門:Pull RequestでPlan、承認後にApply、しかも静的キーなし
https://papoo.work/doc/ee9edf1f4132741b
#terraform #github_actions #gcp #cicd #infrastructure_as_code
GCP上のTerraformを安全に回すCI/CD入門:Pull RequestでPlan、承認後にApply、しかも静的キーなし
papoo.work
May 22, 2026 at 12:49 PM
dependabot created a branch dependabot[bot] Bot created a branch in cyclops-k8s/swiss-army-knife · May 24, 2026 04:12 refs/heads/dependabot/github_actions/docker/build-push-action-7.2.0 in cyclops...

Origin | Interest | Match
Awakari App
awakari.com
May 24, 2026 at 4:19 AM
dependabot deleted dependabot[bot] bot deleted branch refs/heads/dependabot/github_actions/actions/setup-python-6 in MoJo2600/pihole-kubernetes · January 3, 2026 18:05 MoJo2600/pihole-kubernetes U...

Origin | Interest | Match
Awakari App
awakari.com
January 3, 2026 at 6:12 PM
dependabot created a branch dependabot[bot] bot created a branch in kubernetes-sigs/sig-storage-local-static-provisioner · August 20, 2025 03:19 refs/heads/dependabot/github_actions/azure/setup-he...

Origin | Interest | Match
Awakari App
awakari.com
August 20, 2025 at 3:38 AM
dependabot bot deleted branch dependabot/github_actions/actions-7e2ce37f1e at kubernetes/release ...

https://github.com/

Event Attributes
GitHub · Build and ship software on a single, collaborative platform
Join the world's most widely adopted, AI-powered developer platform where millions of developers, businesses, and the largest open source community build software that advances humanity.
github.com
February 17, 2025 at 4:26 AM
dependabot created a branch dependabot[bot] bot created a branch in sloweyyy/cloud-native-ecommerce-platform · December 22, 2025 06:17 refs/heads/dependabot/github_actions/peter-evans/create-pull-...

Origin | Interest | Match
Awakari App
awakari.com
December 22, 2025 at 6:22 AM
Os segredos roubados pelo worm são então criptografados e publicados em branches do GitHub na conta da vítima, com nomes no formato "dependabot/github_actions/format/${palavras-do-universo-duna}" conforme a lista abaixo
May 12, 2026 at 10:32 AM
📢 Post-mortem : compromission de la chaîne d'approvisionnement npm de TanStack (mai 2026)
📝 ## 🔍 Contexte

Le 11 mai 2026, TanStack a publié un p…
https://cyberveille.ch/posts/2026-05-13-post-mortem-compromission-de-la-chaine-d-approvisionnement-npm-de-tanstack-mai-2026/ #GitHub_Actions #Cyberveille
May 13, 2026 at 1:30 PM
📢 Campagne Mini Shai-Hulud : TanStack, UiPath, Mistral AI et d'autres packages npm/PyPI compromis
📝 ## 🗓️ Contexte

Le 11 mai 2026, Wiz pu…
https://cyberveille.ch/posts/2026-05-12-campagne-mini-shai-hulud-tanstack-uipath-mistral-ai-et-d-autres-packages-npm-pypi-compromis/ #GitHub_Actions #Cyberveille
May 12, 2026 at 10:30 AM
📢 elementary-data 0.23.3 compromis : injection GitHub Actions publie un stealer sur PyPI et GHCR
📝 ## 🎯 Contexte

L'article est publié l…
https://cyberveille.ch/posts/2026-04-26-elementary-data-0-23-3-compromis-injection-github-actions-publie-un-stealer-sur-pypi-et-ghcr/ #GitHub_Actions #Cyberveille
April 26, 2026 at 2:30 PM
📢 Attaque supply chain sur Trivy : 75 tags de l’action GitHub aquasecurity/trivy-action détournés pour un infostea…📝 …
https://cyberveille.ch/posts/2026-03-20-attaque-supply-chain-sur-trivy-75-tags-de-laction-github-aquasecurity-trivy-action-detournes-pour-un-infostealer/ #GitHub_Actions #Cyberveil…
March 20, 2026 at 4:00 PM
📢 Incident Trivy: exploitation de GitHub Actions, suppressions de releases et extension VSCode malveillante
📝 Source: GitHub …
https://cyberveille.ch/posts/2026-03-08-incident-trivy-exploitation-de-github-actions-suppressions-de-releases-et-extension-vscode-malveillante/ #GitHub_Actions #Cyberveille
March 9, 2026 at 6:00 PM
📢 Shai‑Hulud 2.0 : ver NPM auto‑réplicant détournant GitHub Actions comme canal C2
📝 Selon Iru (Threat Intelligence), dans un billet du 4 décembre 202…
https://cyberveille.ch/posts/2025-12-06-shai-hulud-2-0-ver-npm-auto-replicant-detournant-github-actions-comme-canal-c2/ #GitHub_Actions #Cyberveille
December 6, 2025 at 5:00 PM
📢 PyPI alerte sur la campagne Shai‑Hulud (npm) et révoque des jetons exposés
📝 Source: blog.pypi.org — Le billet de Mike Fiedler (PyPI Admin, Safety & Secur…
https://cyberveille.ch/posts/2025-12-04-pypi-alerte-sur-la-campagne-shai-hulud-npm-et-revoque-des-jetons-exposes/ #GitHub_Actions #Cyberveille
December 4, 2025 at 12:00 PM
📢 PostHog détaille l’attaque Shai‑Hulud 2.0 ayant compromis des paquets npm via GitHub Actions
📝 Selon PostHog (posthog.com), un ver auto…
https://cyberveille.ch/posts/2025-12-02-posthog-detaille-lattaque-shai-hulud-2-0-ayant-compromis-des-paquets-npm-via-github-actions/ #GitHub_Actions #Cyberveille
December 2, 2025 at 3:00 PM
📢 SentinelOne décrit la nouvelle variante du ver Sha1-Hulud exploitant des paquets NPM compromis
📝 Source: SentinelOne (Flash Report, …
https://cyberveille.ch/posts/2025-11-27-sentinelone-decrit-la-nouvelle-variante-du-ver-sha1-hulud-exploitant-des-paquets-npm-compromis/ #GitHub_Actions #Cyberveille
November 27, 2025 at 11:30 AM
📢 Bilan 2024/2025 des compromissions open source : phishing, handoff de contrôle et GitHub Actions en cause
📝 Source: filippo.…
https://cyberveille.ch/posts/2025-10-20-bilan-2024-2025-des-compromissions-open-source-phishing-handoff-de-controle-et-github-actions-en-cause/ #GitHub_Actions #Cyberveille
October 21, 2025 at 11:00 AM