Cloud Platform Integrity & DevSecOps Exposure
Active exploitation of GitLab's unauthenticated CVSS 10.0 path-traversal flaw highlights the urgent risk of internet-facing development infrastructure, secrets, and credentials. DDRop's reported attacks against Intel TDX, Scalable SGX, and AMD SEV-SNP also challenge confidential-computing assumptions, requiring reassessment of hardware trust boundaries and provider threat models.
Sources (2)
Updated Sep 15, 2026