Security
GitHub Actions re-enabled with Mini Shai-Hulud payload still active
BleepingComputer·September 26, 2026·1 min read
Two third-party GitHub Actions compromised in the Mini Shai-Hulud campaign were re-enabled by their maintainer and remained accessible for over a week despite still pointing to malicious code. The re-enabled actions continued to pose a supply-chain risk to users who unknowingly executed the tainted workflows, highlighting the need for rigorous action auditing.
Read at BleepingComputerDaily crypto arcade
Read the news, then play it.
Chainshorts turns crypto headlines into a daily game. Catch up in 60 words, then jump into daily lucky draws for a shot at the pot.
