Megalodon: Mass GitHub Repo Backdooring via CI Workflows
This article details "Megalodon," a novel supply chain attack technique that exploits GitHub CI/CD workflows to backdoor large numbers of repositories simultaneously. By abusing trusted automation pipelines, attackers can inject malicious code across multiple projects without raising immediate suspicion.