A critical flaw in Oracle software has led to a significant data breach affecting Korean Air and its catering subsidiary. The incident has exposed the personal bank details and names of roughly 30,000 employees, highlighting the growing risks associated with digital supply chains in the aviation industry.
The GhostAction attack on GitHub saw 3,325 secrets stolen from 327 accounts, as attackers planted a malicious Actions workflow to snatch keys and tokens—here’s what happened and how it was stopped.



