
Attackers exploited CVE-2024-6385, a maximum-severity GitLab path traversal flaw, to extract CI/CD secrets and SSH keys without authentication. TRC analysis shows rapid escalation from initial probes to full development infrastructure compromise. Runtime segmentation helps limit blast radius when development platforms are breached. #SupplyChainSecurity 🔗 Full breakdown: https://aviatrix.ai/threat-research-center/gitlab-cve-2026-85706-maximum-severity-supply-chain-risk
