Paul SerbanSoftware Engineer
  • PORTFOLIO
  • BLOG

#Open Source Security

Posts

  • 3 Ways to Secure Your GitHub Workflows from Malicious Pull RequestsDon't get hacked. Implement these best practices today to safely handle pull requests from forks without disabling your automations.

    Secure your GitHub Actions. Learn 3 essential mitigation techniques: checking PR origins, using manual approval labels, and gating jobs with environments.

    • #GitHub Actions
    • #CI/CD Security
    • #DevSecOps
    • #Open Source Security
    • #Pull Request Security
  • Am I Vulnerable? How to Audit Your GitHub Actions for the pull_request_target FlawA practical guide to finding and fixing the common misconfiguration that allows untrusted code to run with privileged access.

    Audit your GitHub workflows for a critical security flaw. This guide helps you identify if your use of `pull_request_target` is checking out untrusted code.

    • #GitHub Actions
    • #CI/CD
    • #Security
    • #DevSecOps
    • #Open Source Security
View all posts
  • LinkedInLinkedIn
  • GitHubGitHub
  • HackerRankHackerRank
  • LeetCodeLeetCode
  • EmailEmail
  • Portfolio
  • My Projects
  • Coursework
  • Blog
  • Posts
  • Snippets
  • Book Notes
  • Cookie Settings
  • Cookie Policy
2025 © Paul Serban. All rights reserved.www.paulserban.eu | Sitemap