Static

GitLab Email Addresses Can Be Weaponized for Supply Chain Attacks

First reported by Dark Reading ·

The signal ●○○○ Brief pending · reported by Dark Reading, the single source so far
What happened

Incoming email addresses automatically assigned to each user on the platform contain highly privileged access tokens that attackers can use.

Source description shown. AI brief pending.

Email