Trend Micro researchers demonstrate how threat actors can abuse GitHub Codespaces' port forwarding feature to host and distribute malware and malicious scripts
“Theoretically, an attacker could run a simple Python web server, upload malicious scripts or malware to their Codespace, open a web server port on their VM, and assign it ‘public’ visibility.” https://www.bleepingcomputer.com/ ...