As cited
Copy frozen at (site build).
threat intel
Network of 200 GitHub Repositories Used for Malware Infection
A network of approximately 200 GitHub repositories is being exploited to distribute Windows malware through a Go module that loads PowerShell code and retrieves payloads from dead drops. This abuse of GitHub's infrastructure demonstrates how legitimate code hosting platforms can be weaponized for malware delivery at scale.
Why it matters: Windows developers and DevOps teams need to audit their GitHub dependencies and code supply chains immediately, as malicious repositories can masquerade as legitimate packages and compromise build pipelines and systems.
- Source published
- First seen by Cybersecurity Tracker
Source attribution
Correction
Correction recorded as of .
threat intel
Network of 200 GitHub Repositories Used for Malware Infection
A network of approximately 200 GitHub repositories is being exploited to distribute Windows malware through a Go module that loads PowerShell code and retrieves payloads from dead drops. This abuse of GitHub's infrastructure demonstrates how legitimate code hosting platforms can be weaponized for malware delivery at scale.
Why it matters: Windows developers and DevOps teams need to audit their GitHub dependencies and code supply chains immediately, as malicious repositories can masquerade as legitimate packages and compromise build pipelines and systems.
- Source published
- First seen by Cybersecurity Tracker