<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
    <channel>
        <title>Elad Pticha and Oreen Livni: Why Your CI/CD Pipeline Is Vulnerable — and It’s Not Your Fault</title>
        <link>https://peertube.eqver.se/videos/watch/397b82c1-8b2a-4278-a873-d99602f7d006</link>
        <description>A DEF CON 32 talk exploring how a single command injection vulnerability in a CI/CD component can put a major open-source project at risk — demonstrated through Bazel and a GitHub Action case study. The speakers show how even “secure” pipelines can be compromised, demonstrate real attack scenarios, and explain how threat actors can inject malicious code into widely used repositories.</description>
        <lastBuildDate>Fri, 24 Jul 2026 11:25:46 GMT</lastBuildDate>
        <docs>https://validator.w3.org/feed/docs/rss2.html</docs>
        <generator>PeerTube - https://peertube.eqver.se</generator>
        <image>
            <title>Elad Pticha and Oreen Livni: Why Your CI/CD Pipeline Is Vulnerable — and It’s Not Your Fault</title>
            <url>https://peertube.eqver.se/client/assets/images/icons/icon-512x512.png</url>
            <link>https://peertube.eqver.se/videos/watch/397b82c1-8b2a-4278-a873-d99602f7d006</link>
        </image>
        <copyright>All rights reserved, unless otherwise specified in the terms specified at https://peertube.eqver.se/about and potential licenses granted by each content's rightholder.</copyright>
        <atom:link href="https://peertube.eqver.se/feeds/video-comments.xml?videoId=397b82c1-8b2a-4278-a873-d99602f7d006" rel="self" type="application/rss+xml"/>
    </channel>
</rss>