Software Supply Chain Risk: AWS CodeBreach Breakdown
A misconfiguration in AWS CodeBuild, dubbed CodeBreach, could have allowed attackers to trigger privileged builds, expose GitHub credentials, and compromise core repositories, highlighting a massive supply chain risk in CI/CD pipelines.