Shai-Hulud malware attack: Tinycolor and over 40 NPM packages compromised

Num2words PyPI Package Compromised

eslint-config-prettier npm package compromised

Tj-actions/changed-files GitHub Action Compromised – used by over 23K repos

Popular GitHub Action tj-actions/changed-files is compromised

Uniting Developers and Security: Celebrating the Success of 500+ Open Source Projects Using StepSecurity's Orchestration Platform