Security News Supply chain attack on popular GitHub Action exposes CI/CD secrets BleepingComputer Daniel Bender Mar 17, 2025 A supply chain attack on the widely used 'tj-actions/changed-files' GitHub Action, used by 23,000 repositories, potentially allowed threat actors to steal CI/CD secrets from GitHub Actions build logs.