Difference between revisions of "Codecov"

From wikieduonline
Jump to navigation Jump to search
(Created page with "wikipedia:Codecov")
 
 
(6 intermediate revisions by 2 users not shown)
Line 1: Line 1:
 
[[wikipedia:Codecov]]
 
[[wikipedia:Codecov]]
 +
 +
 +
 +
== Security issue ==
 +
Around April 2021, a [[supply chain attack]] using code auditing tool codecov allowed hackers limited access to [[HashiCorp]]'s customers networks.<ref>{{Cite web|date=2021-04-27|title=HashiCorp revoked private key exposed in Codecov security breach|url=https://venturebeat.com/2021/04/26/hashicorp-revoked-private-key-exposed-in-codecov-security-breach/|access-date=2021-08-03|website=VentureBeat|language=en-US}}</ref> As a result private credentials were leaked. HashiCorp revoked a private signing key and asked its customers to use a new rotated key.
 +
 +
== Related ==
 +
* [[SLSA]]
 +
* [[Sentry]]
 +
* [[Sourcegraph]]
 +
 +
== See also ==
 +
* {{SLSA}}
 +
* {{Sentry}}
 +
 +
[[Category:IT]]

Latest revision as of 08:35, 26 January 2024

wikipedia:Codecov


Security issue[edit]

Around April 2021, a supply chain attack using code auditing tool codecov allowed hackers limited access to HashiCorp's customers networks.[1] As a result private credentials were leaked. HashiCorp revoked a private signing key and asked its customers to use a new rotated key.

Related[edit]

See also[edit]

  • "HashiCorp revoked private key exposed in Codecov security breach". VentureBeat. 2021-04-27. Retrieved 2021-08-03.<templatestyles src="Module:Citation/CS1/styles.css"></templatestyles>
  • Advertising: