Mozilla Issues New Firefox GPG Key Following Exposure

The previous GPG signing subkey was inadvertently added to a GitHub repository and Mozilla decided to revoke it. The accidental exposure and subsequent revocation of a GPG signing key highlights the critical importance of robust access controls and sensitive data handling practices within software development pipelines.

https://meta-news.info/ver/mozilla-issues-new-firefox-gpg-key-following-exposure