news.mlab.sh
1 result
supply-chain

Mozilla Issues New Firefox GPG Key Following Exposure

Mozilla has revoked a compromised GPG signing key used for Firefox and Thunderbird, following its accidental exposure in a GitHub repository. While the immediate risk was mitigated due to limited access, the incident highlights the ongoing threat of supply chain attacks and the importance of key rotation practices. Use…

SecurityWeek · Aug 11, 2026 Medium