跳至内容
Advertisement

GitHub 在不到六个小时内紧急修复了一个严重漏洞

上个月,GitHub 员工在不到六个小时内修复了一个严重的远程代码执行漏洞。 Wiz Research 使用 AI 模型发现了 GitHub 内部 git 基础设施中的漏洞,该漏洞可能允许攻击者访问...

schedule 10:04 visibility 49 浏览
GitHub 在不到六个小时内紧急修复了一个严重漏洞
来源: The Verge
An illustration of the GitHub logo

GitHub employees fixed a critical remote code execution vulnerability in less than six hours last month. Wiz Research used AI models to uncover a vulnerability in GitHub's internal git infrastructure that could have allowed attackers to access millions of public and private code repositories.

"Our security team immediately began validating the bug bounty report. Within 40 minutes, we had reproduced the vulnerability internally and confirmed the severity," explains Alexis Walesa, GitHub chief information security officer. "This was a critical issue that required immediate action."

GitHub's engineering team developed a fix and deployed it ju …

Read the full story at The Verge.

newspaper

原文发布于

The Verge

open_in_new 阅读全文

相关文章