OIDC 토큰 탈취를 통한 5억 건 이상의 npm/PyPI 공급망 공격 발생
Mini Shai-Hulud: un gusano de cadena de suministro que explotó TanStack y el ecosistema npm.
Mini Shai-Hulud: un gusano de cadena de suministro que explotó TanStack y el ecosistema npm.
pnpm workspaces: the CI cache that survived the fix and cost me 40 minutes per build
pnpm workspaces: el caché de CI que sobrevivió al fix y me costó 40 minutos de build
Cache-poisoning caper turns TanStack npm packages toxic
What now? explaining the TanStack Supply Chain Attack
pull_request_target 권한 허점을 이용한 Cache Poisoning 공격 및 공급망 침해
GitHub Action: Auto-Post Architecture Diagrams on IaC PRs
I Replaced My Code Reviewer with AI — Here's the Exact Prompt Workflow That Catches 90% of Bugs
Cross-posting to four platforms means remembering four character limits
Source Score: Using AI to automate addition of new sources
Your Next DevOps Interview Just Got Easier
I shipped cc-audit as a GitHub Action. Now your CLAUDE.md gets linted on every PR.
I built an AI that explains your CI failures in plain English (right inside your PR)
How I Built, Scanned, and Automated a Docker Pipeline
My CI Runner Was Killed by My Own Script: The Dark Side of Cleanup
How to Deploy NestJS to AWS Lambda Using CDK and GitHub Actions
Building a Lightweight Website Monitor with Cron and an API
Why We're Giving Octopus Free to Open Source, Forever
Stop Manually Updating Jira After Every PR Merge
I Shipped My First Cloudflare Worker via GitHub Actions in 47 Minutes (3 Were Wasted on the Wrong API Token)