vz-risk / VCDB

VERIS Community Database
Other
573 stars 180 forks source link

Codecov discloses 2.5-month-long supply chain attack #17467

Open swidup opened 3 years ago

swidup commented 3 years ago

https://therecord.media/codecov-discloses-2-5-month-long-supply-chain-attack/

swidup commented 3 years ago

https://about.codecov.io/security-update/

swidup commented 3 years ago

https://www.bleepingcomputer.com/news/security/codecov-starts-notifying-customers-affected-by-supply-chain-attack/

swidup commented 3 years ago

https://venturebeat.com/2021/04/26/hashicorp-revoked-private-key-exposed-in-codecov-security-breach/

swidup commented 3 years ago

Rapid7 https://www.zdnet.com/article/rapid7-source-code-alert-data-accessed-in-codecov-supply-chain-attack/

swidup commented 3 years ago

Mercari https://www.bleepingcomputer.com/news/security/e-commerce-giant-suffers-major-data-breach-in-codecov-incident/