{"generator":"Jekyll","link":[{"@attributes":{"href":"https:\/\/ramimac.me\/feed.xml","rel":"self","type":"application\/atom+xml"}},{"@attributes":{"href":"https:\/\/ramimac.me\/","rel":"alternate","type":"text\/html"}}],"updated":"2026-07-19T12:15:58+00:00","id":"https:\/\/ramimac.me\/feed.xml","title":"High Signal Security","subtitle":"Cloud security research and engineering insights by Rami McCarthy.","author":{"name":"ramimac"},"entry":[{"title":"M-Red-Team: AsyncAPI Supply Chain Compromise via GitHub Actions","link":{"@attributes":{"href":"https:\/\/ramimac.me\/asyncapi-supply-chain","rel":"alternate","type":"text\/html","title":"M-Red-Team: AsyncAPI Supply Chain Compromise via GitHub Actions"}},"published":"2026-07-14T19:00:00+00:00","updated":"2026-07-14T19:00:00+00:00","id":"https:\/\/ramimac.me\/asyncapi-supply-chain","content":{"@attributes":{"type":"html"}},"author":{"name":"ramimac"},"category":[{"@attributes":{"term":"security"}},{"@attributes":{"term":"syndicated"}}],"summary":{"@attributes":{"type":"html"}}},{"title":"Miasma: A Supply Chain Attack Targeting Red Hat npm Packages","link":{"@attributes":{"href":"https:\/\/ramimac.me\/teampcp-miasma","rel":"alternate","type":"text\/html","title":"Miasma: A Supply Chain Attack Targeting Red Hat npm Packages"}},"published":"2026-06-01T19:00:00+00:00","updated":"2026-06-01T19:00:00+00:00","id":"https:\/\/ramimac.me\/teampcp-miasma","content":{"@attributes":{"type":"html"}},"author":{"name":"ramimac"},"category":[{"@attributes":{"term":"security"}},{"@attributes":{"term":"syndicated"}}],"summary":{"@attributes":{"type":"html"}}},{"title":"durabletask: TeamPCP\u2019s Latest PyPi Compromise","link":{"@attributes":{"href":"https:\/\/ramimac.me\/teampcp-durabletask","rel":"alternate","type":"text\/html","title":"durabletask: TeamPCP\u2019s Latest PyPi Compromise"}},"published":"2026-05-19T15:00:00+00:00","updated":"2026-05-19T15:00:00+00:00","id":"https:\/\/ramimac.me\/teampcp-durabletask","content":{"@attributes":{"type":"html"}},"author":{"name":"ramimac"},"category":[{"@attributes":{"term":"security"}},{"@attributes":{"term":"syndicated"}}],"summary":{"@attributes":{"type":"html"}}},{"title":"The Worm That Keeps on Digging: TeamPCP Hits @antv in Latest Wave","link":{"@attributes":{"href":"https:\/\/ramimac.me\/teampcp-antv","rel":"alternate","type":"text\/html","title":"The Worm That Keeps on Digging: TeamPCP Hits @antv in Latest Wave"}},"published":"2026-05-19T14:00:00+00:00","updated":"2026-05-19T14:00:00+00:00","id":"https:\/\/ramimac.me\/teampcp-antv","content":{"@attributes":{"type":"html"}},"author":{"name":"ramimac"},"category":[{"@attributes":{"term":"security"}},{"@attributes":{"term":"syndicated"}}],"summary":{"@attributes":{"type":"html"}}},{"title":"Fragnesia: Linux Kernel Local Privilege Escalation via ESP-in-TCP","link":{"@attributes":{"href":"https:\/\/ramimac.me\/fragnesia","rel":"alternate","type":"text\/html","title":"Fragnesia: Linux Kernel Local Privilege Escalation via ESP-in-TCP"}},"published":"2026-05-13T14:00:00+00:00","updated":"2026-05-13T14:00:00+00:00","id":"https:\/\/ramimac.me\/fragnesia","content":{"@attributes":{"type":"html"}},"author":{"name":"ramimac"},"category":[{"@attributes":{"term":"security"}},{"@attributes":{"term":"syndicated"}}],"summary":{"@attributes":{"type":"html"}}},{"title":"Mini Shai-Hulud Strikes Again: TanStack + more npm Packages Compromised","link":{"@attributes":{"href":"https:\/\/ramimac.me\/mini-shai-hulud-tanstack","rel":"alternate","type":"text\/html","title":"Mini Shai-Hulud Strikes Again: TanStack + more npm Packages Compromised"}},"published":"2026-05-12T14:00:00+00:00","updated":"2026-05-12T14:00:00+00:00","id":"https:\/\/ramimac.me\/mini-shai-hulud-tanstack","content":{"@attributes":{"type":"html"}},"author":{"name":"ramimac"},"category":[{"@attributes":{"term":"security"}},{"@attributes":{"term":"syndicated"}}],"summary":{"@attributes":{"type":"html"}}},{"title":"Dirty Frag: Linux Kernel Local Privilege Escalation via ESP and RxRPC","link":{"@attributes":{"href":"https:\/\/ramimac.me\/dirty-frag","rel":"alternate","type":"text\/html","title":"Dirty Frag: Linux Kernel Local Privilege Escalation via ESP and RxRPC"}},"published":"2026-05-08T14:00:00+00:00","updated":"2026-05-08T14:00:00+00:00","id":"https:\/\/ramimac.me\/dirty-frag","content":{"@attributes":{"type":"html"}},"author":{"name":"ramimac"},"category":[{"@attributes":{"term":"security"}},{"@attributes":{"term":"syndicated"}}],"summary":{"@attributes":{"type":"html"}}},{"title":"Practical Package Security: The Unofficial Guide","link":{"@attributes":{"href":"https:\/\/ramimac.me\/practical-package-security","rel":"alternate","type":"text\/html","title":"Practical Package Security: The Unofficial Guide"}},"published":"2026-05-04T14:00:00+00:00","updated":"2026-05-04T14:00:00+00:00","id":"https:\/\/ramimac.me\/practical-package-security","content":{"@attributes":{"type":"html"}},"author":{"name":"ramimac"},"category":[{"@attributes":{"term":"security"}},{"@attributes":{"term":"syndicated"}},{"@attributes":{"term":"supply-chain"}}],"summary":{"@attributes":{"type":"html"}}},{"title":"How to Harden GitHub Actions: An Updated Guide","link":{"@attributes":{"href":"https:\/\/ramimac.me\/github-actions-hardening-updated","rel":"alternate","type":"text\/html","title":"How to Harden GitHub Actions: An Updated Guide"}},"published":"2026-04-15T14:00:00+00:00","updated":"2026-04-15T14:00:00+00:00","id":"https:\/\/ramimac.me\/github-actions-hardening-updated","content":{"@attributes":{"type":"html"}},"author":{"name":"ramimac"},"category":[{"@attributes":{"term":"security"}},{"@attributes":{"term":"syndicated"}},{"@attributes":{"term":"cicd"}},{"@attributes":{"term":"supply-chain"}}],"summary":{"@attributes":{"type":"html"}}},{"title":"Research ROI: Researching Red Oceans","link":{"@attributes":{"href":"https:\/\/ramimac.me\/red-oceans","rel":"alternate","type":"text\/html","title":"Research ROI: Researching Red Oceans"}},"published":"2026-04-07T08:00:00+00:00","updated":"2026-04-07T08:00:00+00:00","id":"https:\/\/ramimac.me\/red-oceans","content":{"@attributes":{"type":"html"}},"author":{"name":"ramimac"},"category":[{"@attributes":{"term":"security"}},{"@attributes":{"term":"research"}},{"@attributes":{"term":"leadership"}}],"summary":{"@attributes":{"type":"html"}}}]}