FakeGit Campaign Uses 7,600 GitHub Repositories to Spread SmartLoader Malware
Cybersecurity researchers have discovered nearly 7,600 malicious GitHub repositories, out of which more than 800 pose as artificial intelligence (AI) skills ...
11 articles
Cybersecurity researchers have discovered nearly 7,600 malicious GitHub repositories, out of which more than 800 pose as artificial intelligence (AI) skills ...
Overview On July 17, 2026, a GitHub Security Advisory was published for CVE-2026-63030, a critical unauthenticated remote code execution vulnerability affect...
A Rust crypto clipper hides behind fake GitHub stars and AI-narrated YouTube videos
GitBait phishing kit abuses GitHub Pages and the SheetBest API to steal Mexican banking credentials
NPM, part of GitHub, announced a new version of the npm package manager with several security improvements, including disabling install scripts
Sloppy AI-generated npm infostealer leaked its own GitHub token, exposing the operator
In March 2026, attackers exploited a pull_request_target misconfiguration in the aquasecurity/trivy-action GitHub Action to exfiltrate organization and repos...
A threat actor compromised an Nx developer and posed as a legitimate maintainer to publish a malicious extension on Visual Studio Marketplace
The prolific threat group TeamPCP has claimed a hack into GitHub’s internal repositories
Open source tool maker Grafana says hackers stole codebase via GitHub breach
From LinkedIn to X, GitHub to Instagram, there are plenty of opportunities to share work-related information. But posting could also get your company into tr...