I am working towards a course project to alleviate "trusting trust" attacks in the Github CI/CD ecosystem. The idea is that Github actions have a lot of pull in supply chains, and the publication method allows malicious developers to upload compromised actions artifacts.
Recent Posts
Notes on Github Actions and Trusting Trust
March 10, 2026
more...
Pinenote
January 14, 2026
I bought an experimental eink tablet for almost $500, because I like to read a lot.
Personal Filesharing
February 17, 2025
I previously used pastebin/filesharing sites to send code and images over IRC. However, I no longer do; after piecing together my own.