Exposed GitHub PATs Enable Cloud Environment Breaches
Article Content
Browse articles
Threat actors are exploiting exposed GitHub Personal Access Tokens (PATs) to gain unauthorized access to cloud environments. The Wiz Customer Incident Response Team reported that these compromised tokens allow attackers to bypass security measures and access sensitive GitHub Action Secrets. This incident highlights a significant vulnerability in the trust placed in GitHub's security features.
Ask AI about this cluster
Answers cite the sources they use
Updated 182d ago How this analysis works
More articles in this cluster (2)
Following this threat?
Track Shai-hulud and Azure in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
UAC-0099 Uses GuardBreaker to Evade AI Malware Detection Russian-linked hackers from the group UAC-0099 have developed a new technique called GuardBreaker to evade AI-assisted malware analysis. This method involves embedding a nuclear weapon prompt in malicious VBS scripts, which distracts AI systems from analyzing the actual malware code. The script is designed to download…
Social Engineering Campaign Hijacks Microsoft 365 Accounts via Passkey Alerts A social engineering campaign impersonating IT support staff is actively hijacking Microsoft 365 accounts. The attackers use passkey-themed lures to trick users into providing credentials, leading to unauthorized access and data exfiltration. Microsoft Security Research has tracked these intrusions since May 2026…