Categories

Subscribe to Feed

Latest Posts

Showing 0 Items

Security Breach in Stripe Repo: A Deep Dive into the "Pwn Request" Vulnerability

The Vulnerability in Stripe’s GitHub Actions Workflow Shows Why Securing CI/CD Pipelines Is Essential

Pinning GitHub Actions for Enhanced Security: Everything You Should Know

Learn the art of pinning GitHub Actions to safeguard your CI/CD processes with this comprehensive guide.

Scan GitHub Actions Build Logs for Secrets with StepSecurity’s New Feature

StepSecurity platform’s new feature automatically detects secrets in build logs, providing real-time alerts and enhancing your DevSecOps practices.

Orchestrating Security: StepSecurity's Impact on 400+ Repositories and Future Plans

StepSecurity's pull request feature has helped over 400 public repositories orchestrate application security tools and harden CI/CD pipelines

Introducing Harden-Runner for Kubernetes-Based Self-Hosted Actions Runners

Harden-Runner now supports Actions Runner Controller (ARC) based self-hosted GitHub Actions runners, enabling enhanced security and seamless integration for your CI/CD workflows.

7 GitHub Actions Security Best Practices (With Checklist)

Your guide to implementing GitHub Actions security best practices- from secret management, third-party actions governance, workflow change management, and more

How to Use Docker in Actions Runner Controller (ARC) Runners Securely

Are you worried about the security of docker in GitHub Actions Runner Controller runners? Do you know that docker in docker (dind) uses the privileged mode in Kubernetes? In this blog post, we will learn how to properly secure docker in ARC runners.

Best Practices in GitHub Actions Security: A Case Study with Google’s Use of StepSecurity

Real-world examples of how Google uses StepSecurity to automate GitHub Actions security for their public repositories, leading to developer productivity, consistent use of best practices, and risk reduction.

There are no blog posts matching your criteria at this time.

Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.