The GitHub Blog


Attacks on Maven proxy repositories

Learn how specially crafted artifacts can be used to attack Maven repository managers. This post describes PoC exploits that can lead to pre-auth remote code execution and poisoning of the local artifacts in Sonatype Nexus and JFrog Artifactory.


Showing popular posts from: All categories



News & insights

Yellow and blue sock with GitHub keycaps coming out the top and GitHub playing cards with Mona on a pink background. Yellow and blue sock with GitHub keycaps coming out the top and GitHub playing cards with Mona on a pink background.

The top 10 gifts for the developer in your life

Whether you’re hunting for the perfect gift for your significant other, the colleague you drew in the office gift exchange, or maybe (just maybe) even for yourself, we’ve got you covered with our top 10 gifts that any developer would love.

The world's largest developer platform



Everything you need to master GitHub, all in one place.



Build what’s next on GitHub, the place for anyone from anywhere to build anything.

Customer stories

Customer stories

Meet the companies and engineering teams that build with GitHub.

Work at GitHub!

Work at GitHub!

Check out our current job openings.