Paul SerbanSoftware Engineer
  • PORTFOLIO
  • BLOG

#CI/CD Security

Posts

  • GitHub Actions Runners: A Deep Dive from Basics to Advanced ArchitectureUnderstanding the Engine Behind Every CI/CD Pipeline on GitHub

    Explore GitHub Actions runners in depth - architecture, self-hosted scaling, security risks, and best practices for professional engineering teams.

    • #CI/CD
    • #DevOps
    • #GitHub Actions
    • #Self-Hosted Runners
    • #Actions Runner Controller
  • 3 Ways to Secure Your GitHub Workflows from Malicious Pull RequestsDon't get hacked. Implement these best practices today to safely handle pull requests from forks without disabling your automations.

    Secure your GitHub Actions. Learn 3 essential mitigation techniques: checking PR origins, using manual approval labels, and gating jobs with environments.

    • #GitHub Actions
    • #CI/CD Security
    • #DevSecOps
    • #Open Source Security
    • #Pull Request Security
  • From Fork to RCE: Deconstructing the Orca Security GitHub Actions ExploitFollowing the attacker's path, from creating a malicious fork to exfiltrating API keys and pushing code to protected branches.

    A step-by-step breakdown of the 'Pull Request Nightmare' exploit. See how attackers leverage `pull_request_target` to achieve RCE and steal secrets.

    • #GitHub Actions
    • #CI/CD Security
    • #DevSecOps
    • #Supply Chain Attacks
    • #Orca Security
View all posts
  • LinkedInLinkedIn
  • GitHubGitHub
  • HackerRankHackerRank
  • LeetCodeLeetCode
  • EmailEmail
  • Portfolio
  • My Projects
  • Coursework
  • Blog
  • Posts
  • Snippets
  • Book Notes
  • Cookie Settings
  • Cookie Policy
2026 © Paul Serban. All rights reserved.www.paulserban.eu | Sitemap