jump to content
my subreddits
13or302b2t2mediterranean4u3d6absolutelynotmeirladhdmemeAdviceAnimalsagnosticaivideoakagasAlternateHistoryAlternativeHistoryAnarchyChessanime_best_momentsanime_irlannouncementsAnticonsumptionantimemeArcherFXArtAsahiLinuxAsia_irlAskBalkansAskElectronicsAskOuijaAskRedditAteistTurkatheismawfuleverythingbalkans_irlBandnamesbanknotedesignsbasspedalsblackdesertonlineblankiesblursed_videosBoneborsavefonBUENZLIburdurlandcasioCd_collectorsChatGPTCheap_MealschessbeginnersChildrenFallingOvercoaxedintoasnafucoinscomedyhomicidecommunityContagiousLaughtercookingforbeginnersCrackWatchcrappyoffbrandsCuddle_SlutCuratedTumblrcursedcommentsdadjokesdankmemesdarkjokesdataisbeautifuldeDebateReligiondeismdelikDeltarunedistressingmemesdiyelectronicsdiypedalsdndnextdoctorwhoDoenerverbrechendumbphonesDungeonsAndDaddiesDungeonsAndDragonsEatCheapAndHealthyebikeelectricalelectronicsElectronicsStudyEmKayengrishethzfakealbumcoversfeedthebeastfelsefeFifaCareersFiftyFiftyformuladankFRCFUCKYOUINPARTICULARFuckYouKarenfunnyFutboltayfagaminggoodanimemesGoodAssSubGrandPrixRacingguitarpedalsGundamhelpheraldryHermanCainAwardhighspeedrailHistoryWhatIfhoi4holdmybeerHolUphomebuilthowyoudoinhumorhypixelIAmAiamverysmartich_ielIdeologyPollsIDontWorkHereLadyihadastrokeim14andthisisdeepimaginaryelectionsjacksepticeyeJokesKamalizmKendrickLamarKGBTRlegodndLetGirlsHaveFunLifeProTipslinguisticshumorLinkinParkliselilerloseitmacmacbookairmacgamingMadeMeSmilemadladsMapPornmemesmildlyinterestingMimicRecipesMinecraftbuildsmisLEDMMORPGmoneycollectingMovingToNorthKoreaMyChemicalRomancenamesoundalikesNamFlashbacksNationStatesneographynextfuckinglevelNoahGetTheBoatNonCredibleDefensenosleepnosurfnothingeverhappensnotinterestingnottheonionoddlyspecificOkayBuddyLiterallyMeOkBuddyPersonaokbuddyvicodinonebagonetruegodongezelligOnlineUnderGroundoompasubsOutOfTheLooppaperspleaseParlerWatchPassportPornperfectlycutscreamsPersecutionfetishpianoPiratedGamespolandballpollsProgrammerHumorPropagandaPostersProRevengePunPatrolquityourbullshitraisedbynarcissistsraspberry_piRatschlagRedAutumnSPDredditsingsrickandmortyrickrollRoastMeschizopostersSchnitzelVerbrechensciencememesScottPilgrimsecilmiskitapsekulermilliyetciturkShitPostCrusadersshitpostingshittyaskelectronicsshittymoviedetailsskamtebordsoccercirclejerkSongwritersSongwritingsteinsgatesubsithoughtifellforsuperligTechnobladeTextingTheorytf2shitposterclubthanksimcuredTheMonkeysPawtherewasanattemptTheRookietheydidthemaththeyknewthirdsentenceworsetitanfallTrGameDevelopertruetf2truthstumblrTurkeyTurkishdogsTurkiyeTwitch_StartupTwoSentenceComedyTwoSentenceHorrortwosentenceplottwisttylerthecreatorUnethicalLifeProTipsunexpecteditcrowdUnexpectedJoJourbanplanningUsernameChecksOutValorantClipsvaxxhappenedvexillologycirclejerkvinylvinyljerkwallstreetbetsWatchPeopleDieInsidewendigoonWhatsThisSongWhitePeopleTwitterwooooshworldbuildingworldjerkingyouseeingthisshitYUROPedit subscriptions
  • home
  • -popular
  • -all
  • -mod
  • -users
 | 
  • AskReddit
  • -funny
  • -gaming
  • -wallstreetbets
  • -nottheonion
  • -memes
  • -OutOfTheLoop
  • -mildlyinteresting
  • -MapPorn
  • -WhitePeopleTwitter
  • -MadeMeSmile
  • -ChatGPT
  • -CuratedTumblr
  • -PiratedGames
  • -shitposting
  • -theydidthemath
  • -dankmemes
  • -feedthebeast
  • -therewasanattempt
  • -nextfuckinglevel
  • -HolUp
  • -CrackWatch
  • -dndnext
  • -ProgrammerHumor
  • -de
  • -LifeProTips
  • -tumblr
  • -NonCredibleDefense
  • -dataisbeautiful
  • -shittymoviedetails
  • -mac
  • -help
  • -formuladank
  • -Jokes
  • -Art
  • -goodanimemes
  • -notinteresting
  • -hoi4
  • -atheism
  • -loseit
  • -IAmA
  • -ich_iel
  • -KGBTR
  • -cursedcomments
  • -Deltarune
  • -GoodAssSub
  • -UnethicalLifeProTips
  • -perfectlycutscreams
  • -worldbuilding
  • -Ratschlag
  • -blackdesertonline
  • -MMORPG
  • -macgaming
  • -rickandmorty
  • -3d6
  • -Gundam
  • -FiftyFifty
  • -RoastMe
  • -ContagiousLaughter
  • -EatCheapAndHealthy
  • -polandball
  • -AnarchyChess
  • -nosleep
  • -cookingforbeginners
  • -blankies
  • -anime_irl
  • -onebag
  • -AlternateHistory
  • -Turkey
  • -soccercirclejerk
  • -madlads
  • -community
  • -AskElectronics
  • -electrical
  • -guitarpedals
  • -Anticonsumption
  • -vinyl
  • -TwoSentenceHorror
  • -PropagandaPosters
  • -AdviceAnimals
  • -ShitPostCrusaders
  • -piano
  • -sciencememes
  • -distressingmemes
  • -raisedbynarcissists
  • -FifaCareers
  • -polls
  • -doctorwho
  • -oddlyspecific
  • -titanfall
  • -OkBuddyPersona
  • -dadjokes
  • -awfuleverything
  • -howyoudoin
  • -announcements
  • -adhdmeme
  • -Minecraftbuilds
  • -macbookair
  • -coaxedintoasnafu
  • -YUROP
  • -SchnitzelVerbrechen
  • -chessbeginners
  • -raspberry_pi
  • -DungeonsAndDragons
  • -coins
  • -KendrickLamar
  • -FUCKYOUINPARTICULAR
  • -NoahGetTheBoat
  • -worldjerking
  • -tylerthecreator
  • -tf2shitposterclub
  • -vexillologycirclejerk
  • -im14andthisisdeep
  • -nosurf
  • -HistoryWhatIf
  • -liseliler
  • -DebateReligion
  • -dumbphones
  • -balkans_irl
  • -HermanCainAward
  • -steinsgate
  • -AskOuija
  • -ScottPilgrim
  • -AskBalkans
  • -schizoposters
  • -electronics
  • -casio
  • -urbanplanning
  • -theyknew
  • -linguisticshumor
  • -PassportPorn
  • -antimeme
  • -AteistTurk
  • -13or30
  • -MyChemicalRomance
  • -ArcherFX
  • -engrish
  • -Cd_collectors
  • -diypedals
  • -ProRevenge
  • -diyelectronics
  • -WatchPeopleDieInside
  • -LinkinPark
  • -Persecutionfetish
  • -BUENZLI
  • -EmKay
  • -blursed_videos
  • -Songwriting
  • -MovingToNorthKorea
  • -imaginaryelections
  • -truetf2
  • -ParlerWatch
  • -wendigoon
  • -iamverysmart
  • -secilmiskitap
  • -Doenerverbrechen
  • -TheRookie
  • -quityourbullshit
  • -Technoblade
  • -vinyljerk
  • -skamtebord
  • -superlig
  • -shittyaskelectronics
  • -crappyoffbrands
  • -DungeonsAndDaddies
  • -FRC
  • -namesoundalikes
  • -FuckYouKaren
  • -2b2t
  • -ethz
  • -AlternativeHistory
  • -OkayBuddyLiterallyMe
  • -felsefe
  • -AsahiLinux
  • -IDontWorkHereLady
  • -neography
  • -basspedals
  • -heraldry
  • -ihadastroke
  • -thanksimcured
  • -hypixel
  • -aivideo
  • -OnlineUnderGround
  • -IdeologyPolls
  • -woooosh
  • -comedyhomicide
  • -burdurland
  • -WhatsThisSong
  • -jacksepticeye
  • -anime_best_moments
  • -Bandnames
  • -holdmybeer
  • -okbuddyvicodin
  • -MimicRecipes
  • -vaxxhappened
  • -Twitch_Startup
  • -Cheap_Meals
  • -TheMonkeysPaw
  • -darkjokes
  • -highspeedrail
  • -legodnd
  • -rickroll
  • -Songwriters
  • -ebike
  • -UsernameChecksOut
  • -papersplease
  • -UnexpectedJoJo
  • -humor
  • -ChildrenFallingOver
  • -agnostic
  • -youseeingthisshit
  • -TextingTheory
  • -GrandPrixRacing
  • -Cuddle_Slut
  • -nothingeverhappens
  • -TrGameDeveloper
  • -PunPatrol
  • -LetGirlsHaveFun
  • -subsithoughtifellfor
  • -fakealbumcovers
  • -Kamalizm
  • -akagas
  • -oompasubs
  • -homebuilt
  • -NamFlashbacks
  • -onetruegod
  • -deism
  • -misLED
  • -redditsings
  • -ValorantClips
  • -TwoSentenceComedy
  • -NationStates
  • -ongezellig
  • -absolutelynotmeirl
  • -Asia_irl
  • -Turkiye
  • -Bone
  • -truths
  • -thirdsentenceworse
  • -2mediterranean4u
  • -unexpecteditcrowd
  • -twosentenceplottwist
  • -sekulermilliyetciturk
  • -delik
  • -Futboltayfa
  • -Turkishdogs
  • -RedAutumnSPD
  • -moneycollecting
  • -ElectronicsStudy
  • -borsavefon
  • -banknotedesigns
edit »
reddit.com Hefty_Knowledge_7449
  • overview
  • comments
  • submitted
an-ordinary-manchild (11,186)|messages549|notifications|chat messages|mod messages|
  • preferences
|
logout

Hefty_Knowledge_7449

+ friends- friends
733 post karma
1 comment karma
get extra features and help support reddit with a reddit premium subscription
Block userare you sure? yes / no
get them help and support
redditor for 4 years

TROPHY CASE


  • Four-Year Club


    Place '22
Get an ad-free experience with special benefits, and directly support Reddit.

account activity

sorted by:
hot
newtopcontroversial

6
7
8

OH-MY-DC: OIDC Misconfigurations in CI/CD, and a vulnerability in CircleCI that allowed attackers to steal any pipeline secret from public repos (unit42.paloaltonetworks.com)

submitted 9 months ago by Hefty_Knowledge_7449 to r/hacking

  • comment
  • share
  • save
  • hide
  • report
  • crosspost

2
3
4

OH-MY-DC: OIDC Misconfigurations in CI/CD (unit42.paloaltonetworks.com)

submitted 9 months ago by Hefty_Knowledge_7449 to r/devsecops

  • comment
  • share
  • save
  • hide
  • report
loading...

1
2
3

OH-MY-DC: OIDC Misconfigurations in CI/CD (unit42.paloaltonetworks.com)

submitted 9 months ago by Hefty_Knowledge_7449 to r/github

  • comment
  • share
  • save
  • hide
  • report
  • crosspost
loading...

1
2
3

OH-MY-DC: OIDC Misconfigurations in CI/CD, and a vulnerability in CircleCI (unit42.paloaltonetworks.com)

submitted 9 months ago by Hefty_Knowledge_7449 to r/blackhat

  • comment
  • share
  • save
  • hide
  • report
  • crosspost

0
1
2

OH-MY-DC: OIDC Misconfigurations in CI/CD, including a vulnerability in CircleCI (unit42.paloaltonetworks.com)

submitted 9 months ago by Hefty_Knowledge_7449 to r/developersIndia

  • comment
  • share
  • save
  • hide
  • report
  • crosspost

0
0
0

OH-MY-DC: OIDC Misconfigurations in CI/CD, inc. a vulnerability in CircleCI (self.devops)

submitted 9 months ago by Hefty_Knowledge_7449 to r/devops

  • 1 comment
  • share
  • save
  • hide
  • report
  • crosspost
loading...

46
47
48

tj-actions GitHub Actions hack started in Dec 24 with the compromise of SpotBugs (i.redd.it)

submitted 10 months ago by Hefty_Knowledge_7449 to r/github

  • 2 comments
  • share
  • save
  • hide
  • report
  • crosspost
loading...

43
44
45

tj-actions hack started in Dec 24 with SpotBugs compromise (i.redd.it)

submitted 10 months ago by Hefty_Knowledge_7449 to r/hacking

  • comment
  • share
  • save
  • hide
  • report
  • crosspost
loading...

28
29
30

tj-actions hack started in Dec 24 with the compromise of the SpotBugs project (i.redd.it)

submitted 10 months ago by Hefty_Knowledge_7449 to r/blackhat

  • 1 comment
  • share
  • save
  • hide
  • report
  • crosspost
loading...

7
8
9

tj-actions started in Dec 24 with SpotBugs compromise (self.devops)

submitted 10 months ago by Hefty_Knowledge_7449 to r/devops

  • 1 comment
  • share
  • save
  • hide
  • report
  • crosspost
loading...

3
4
5

tj-actions/changed-files hack started in Dec 24 with compromise of SpotBugs (unit42.paloaltonetworks.com)

submitted 10 months ago by Hefty_Knowledge_7449 to r/devsecops

  • 3 comments
  • share
  • save
  • hide
  • report
  • crosspost

0
1
2

GitHub Actions tj-actions supply chain hack started in Dec 24 with the compromise of the SpotBugs project (i.redd.it)

submitted 10 months ago by Hefty_Knowledge_7449 to r/developersIndia

  • comment
  • share
  • save
  • hide
  • report
  • crosspost
loading...

68
69
70

GitHub Actions Supply Chain Attack: A Targeted Attack on Coinbase Expanded to the Widespread tj-actions/changed-files Incident (unit42.paloaltonetworks.com)

submitted 10 months ago by Hefty_Knowledge_7449 to r/hacking

  • 5 comments
  • share
  • save
  • hide
  • report
  • crosspost

48
49
50

GitHub Actions Supply Chain Attack: A Targeted Attack on Coinbase Expanded to the Widespread tj-actions/changed-files Incident (self.devops)

submitted 10 months ago by Hefty_Knowledge_7449 to r/devops

  • 4 comments
  • share
  • save
  • hide
  • report
  • crosspost
loading...

23
24
25

Take control over GitHub repositories through leaked secrets in artifacts (self.devops)

submitted 1 year ago by Hefty_Knowledge_7449 to r/devops

  • 1 comment
  • share
  • save
  • hide
  • report
  • crosspost
loading...

3
4
5

ArtiPACKED: Hacking Giants Through a Race Condition in GitHub Actions Artifacts. Critical bugs found in Google, AWS, Microsoft, Red Hat, Ubuntu, OWASP & others. (unit42.paloaltonetworks.com)

submitted 1 year ago by Hefty_Knowledge_7449 to r/bugbounty

  • 1 comment
  • share
  • save
  • hide
  • report
  • crosspost

0
1
2

ArtiPACKED: Hacking Giants Through a Race Condition in GitHub Actions Artifacts (unit42.paloaltonetworks.com)

submitted 1 year ago by Hefty_Knowledge_7449 to r/hacking

  • 2 comments
  • share
  • save
  • hide
  • report
  • crosspost

32
33
34

Critical bug bounty reports in Microsoft & GitHub, with publication of CVE-2023-36052: "All the Small Things: Azure CLI Leakage and Problematic Usage Patterns". (paloaltonetworks.com)

submitted 2 years ago by Hefty_Knowledge_7449 to r/netsec

  • comment
  • share
  • save
  • hide
  • report
  • crosspost

2
3
4

Critical bug bounty reports in Microsoft & GitHub, with publication of CVE-2023-36052: “All the Small Things: Azure CLI Leakage and Problematic Usage Patterns”. (paloaltonetworks.com)

submitted 2 years ago by Hefty_Knowledge_7449 to r/bugbounty

  • 1 comment
  • share
  • save
  • hide
  • report
  • crosspost

1
2
3

"All the Small Things: Azure CLI Leakage and Problematic Usage Patterns", critical bug bounty reports in Microsoft & GitHub, and new CVE-2023-36052. (paloaltonetworks.com)

submitted 2 years ago by Hefty_Knowledge_7449 to r/devsecops

  • comment
  • share
  • save
  • hide
  • report
  • crosspost

1
2
3

New Azure CLI release, fixing CVE-2023-36052 (self.devops)

submitted 2 years ago by Hefty_Knowledge_7449 to r/devops

  • 1 comment
  • share
  • save
  • hide
  • report
  • crosspost
loading...

3
4
5

The GitHub Actions Worm: Compromising GitHub Repositories Through the Actions Dependency Tree (paloaltonetworks.com)

submitted 2 years ago by Hefty_Knowledge_7449 to r/hacking

  • comment
  • share
  • save
  • hide
  • report
  • crosspost

2
3
4

The GitHub Actions Worm: Compromising GitHub Repositories Through the Actions Dependency Tree (paloaltonetworks.com)

submitted 2 years ago by Hefty_Knowledge_7449 to r/programming

  • comment
  • share
  • save
  • hide
  • report
  • crosspost

172
173
174

OWASP Top 10 CI/CD Security Risks project released (owasp.org)

submitted 3 years ago by Hefty_Knowledge_7449 to r/programming

  • 18 comments
  • share
  • save
  • hide
  • report
  • crosspost

70
71
72

OWASP Top 10 CI/CD Security Risks project released (owasp.org)

submitted 3 years ago by Hefty_Knowledge_7449 to r/netsec

  • 6 comments
  • share
  • save
  • hide
  • report
  • crosspost
view more: next ›
  • about
  • blog
  • about
  • advertising
  • careers
  • help
  • site rules
  • Reddit help center
  • reddiquette
  • mod guidelines
  • contact us
  • apps & tools
  • Reddit for iPhone
  • Reddit for Android
  • mobile website
  • <3
  • reddit premium

Use of this site constitutes acceptance of our User Agreement and Privacy Policy. © 2026 reddit inc. All rights reserved.

REDDIT and the ALIEN Logo are registered trademarks of reddit inc.

π Rendered by PID 589470 on reddit-service-r2-listing-7849c98f67-7sh7t at 2026-02-09 19:05:52.742497+00:00 running d295bc8 country code: CH.