T1199
Trusted Relationship
discovered 2026-06-01Abuse of npm GitHub Actions trusted publishing, which binds trust to repository + workflow filename rather than branch/ref/environment.
View on MITRE ATT&CKAbuse of npm GitHub Actions trusted publishing, which binds trust to repository + workflow filename rather than branch/ref/environment.
View on MITRE ATT&CK