Trusted By
Overlooked Attack Surfaces
Unaddressed CI/CD Security Risks Leave Companies Open to Compromise
March 2025
tj-actions/changed-files action is compromised
Application Security
Learn how StepSecurity Harden-Runner detected the tj-actions/changed-files supply chain attack
January 2024
PyTorch Supply Chain Compromise
Researchers detail a CI/CD attack leading to PyTorch releases compromise via GitHub Actions self-hosted runners
Sept 25, 2024
Security Breach in Stripe Repo: A Deep Dive into the "Pwn Request" Vulnerability
Stripe Repository Breach
The Vulnerability in Stripe’s GitHub Actions Workflow Shows Why Securing CI/CD Pipelines Is Essential
No items found.
Multilayered Approach
The Definitive Platform for CI/CD Protection
Why Step Security
Experience the StepSecurity Difference