Tag
#gitlab
4 stories taggedgitlab.

AI Security
This Week in AI Security: Rogue Packages, PLC Hacks by Chatbot, and Leaky Stripe Keys
A weekly roundup of the AI and infrastructure security stories that actually matter, translated into plain English.
4 min read

Vulnerabilities
Critical GitLab Flaw Lets Attackers Wipe Public Projects Without Logging In
GitLab has patched a flaw rated 9.4 out of 10 that let unauthenticated attackers alter or delete public projects and user data through the platform's GraphQL interface.
3 min read

Vulnerabilities
GitLab Flaw Lets Any Logged-In User Run Commands on Self-Hosted Servers
A researcher published working exploit code against GitLab 18.11.3 that hijacks the server through two booby-trapped notebooks and a diff request.
3 min read

Threat Intelligence
ClickFix Campaign Turns Google Ads, GitLab, and Claude Into a Six-Wave Trust Machine
Attackers chained legitimate infrastructure across seven weeks to push malicious PowerShell commands to developers. Session tokens, SSH keys, and cloud credentials were the prize.
3 min read