Nathan Frank discusses how the insurer is using AI to engage members, how the company thinks about risks, and the importance of monitoring the tools and soliciting feedback.

Compromised GitHub Action Exfiltrates Workflow Credentials to Attacker Domain
A widely used GitHub Action called actions-cool/issues-helper has been compromised, with every version tag in the repository silently redirected to a malicious commit. The attack

