Microsoft Describes Azure DevOps Pipeline Abuse After Identity Compromise

Microsoft analyzed an incident attributed to Storm-3068 activity in which an attacker used an Azure DevOps pipeline to obtain kubeconfig files after taking over an account.

Microsoft analyzed an incident attributed to Storm-3068 activity in which an attacker used an Azure DevOps pipeline to obtain kubeconfig files after taking over an account.

Google has published AX v0.3.0 in the google/ax repository. The open project provides a Kubernetes-native layer for orchestrating, isolating, and managing environments for agent tasks, but its API may still change substantially.