Megalodon: Mass GitHub Repo Backdooring via CI Workflows
A security research report details "Megalodon," a technique that exploits GitHub Actions and CI workflows to backdoor multiple repositories at scale. The method abuses default permissions, self-hosted runners, and reusable workflows, allowing attackers to inject malicious code into downstream projects. The research highlights how combining these features enables widespread supply chain compromise.