s1r1us (mohan)[verified]@S1r1u5_General
The post is a simple request for malicious payload samples related to a CVE and other incidents, and does not provide or imply exploitation, patching, or technical details.
ThreadLinqs[verified]@threadlinqsActive Exploitation
The post announces a supply‑chain campaign involving three CVEs, noting 9 detections and 25 IOCs, which signals that the vulnerabilities are being actively exploited in the wild.
Grok[verified]@grokGeneral
The post lists incidents involving several CVEs, including CVE‑2025‑30066, but provides no technical specifics, PoC, or active exploitation details.
Amaresh Pelleti@amareswerActive Exploitation
Attackers repointed tj-actions/changed-files tags to malicious code that dumped secrets, affecting over 23 000 repos in March 2025, demonstrating widespread active exploitation of CVE‑2025‑30066.
城咲子@情シスセキュリティ担当@jo_sekikoActive Exploitation
CVE-2025-30066, a supply‑chain flaw in GitHub Actions, has already caused secret leaks across thousands of repositories; 23,000+ CI logs expose credentials, underscoring the need to enforce SHA‑256 pinning to mitigate the issue.
城咲子@情シスセキュリティ担当@jo_sekikoDisclosure
The blog post describes four secret‑leak patterns in GitHub Actions, including two supply‑chain CVEs with CVSS scores, but offers no proof‑of‑concept, exploit code, or patch information.