Lemmy.one
  • Communities
  • Create Post
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
RSS Bot@lemmy.bestiver.seMB to Hacker News@lemmy.bestiver.seEnglish · 19 days ago

How We Exploited CodeRabbit: From Simple PR to RCE and Write Access on 1M Repos

research.kudelskisecurity.com

external-link
message-square
0
fedilink
  • cross-posted to:
  • Technology@programming.dev
  • techsploits@reddthat.com
  • cybersec@fed.dyne.org
  • security@lemmy.ml
4
external-link

How We Exploited CodeRabbit: From Simple PR to RCE and Write Access on 1M Repos

research.kudelskisecurity.com

RSS Bot@lemmy.bestiver.seMB to Hacker News@lemmy.bestiver.seEnglish · 19 days ago
message-square
0
fedilink
  • cross-posted to:
  • Technology@programming.dev
  • techsploits@reddthat.com
  • cybersec@fed.dyne.org
  • security@lemmy.ml
How We Exploited CodeRabbit: From a Simple PR to RCE and Write Access on 1M Repositories
research.kudelskisecurity.com
external-link
In this blog post, we explain how we got remote code execution (RCE) on CodeRabbit’s production servers, leaked their API tokens and secrets, how we could have accessed their PostgreSQL datab…

Comments

alert-triangle
You must log in or # to comment.

Hacker News@lemmy.bestiver.se

hackernews@lemmy.bestiver.se

Subscribe from Remote Instance

You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !hackernews@lemmy.bestiver.se
lock
Community locked: only moderators can create posts. You can still comment on posts.

Posts from the RSS Feed of HackerNews.

The feed sometimes contains ads and posts that have been removed by the mod team at HN.

Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 492 users / day
  • 1.39K users / week
  • 3.35K users / month
  • 8.86K users / 6 months
  • 3 local subscribers
  • 2.54K subscribers
  • 16.1K Posts
  • 7.58K Comments
  • Modlog
  • mods:
  • patrick@lemmy.bestiver.se
  • RSS Bot@lemmy.bestiver.se
  • BE: 0.19.7
  • Modlog
  • Legal
  • Instances
  • Docs
  • Code
  • join-lemmy.org