The CI/CD workflow weakness affects Microsoft’s Azure Sentinel, Google’s AI Agent Development Kit, Apache’s Doris analytics database, Cloudflare’s Workers SDK, and Python Software Foundation’s Black.
First seen on darkreading.com
Jump to article: www.darkreading.com/application-security/cordyceps-malicious-pull-requests-developer-workflows
![]()

