Chinese malware is flooding GitHub pages – HiddenGh0st, Winos and kkRAT hit devs via SEO poisoning

Chinese users are being targeted by malware campaigns using spoofed download sites and SEO poisoning kkRAT…

Continue Reading

GitHub supply chain attack sees thousands of tokens and secrets stolen in GhostAction campaign

GhostAction attack stole 3,325 secrets from 327 GitHub accounts GitGuardian helped shut it down and alerted…

Continue Reading

Hook v3 unleashes a shocking arsenal of ransomware overlays, fake banking prompts, spyware functions, and real-time device monitoring

Hook v3 uses fake Google Pay overlays to trick victims into surrendering sensitive card data Real-time…

Continue Reading

Microsoft warns dangerous PipeMagic backdoor is being disguised as ChatGPT desktop app – here’s what we know

Microsoft saw a modified version of a GitHub project carrying malware The malware can serve as…

Continue Reading

GitHub CEO resigns – is this the latest sign of its Microsoft absorption?

Thomas Dohmke resigns as GitHub CEO, effective by the end of 2025 GitHub is getting closer…

Continue Reading

GitHub calls for major expansion in open source funding from the EU

GitHub wants the EU to create a Sovereign Tech Fund for OSS maintenance Microsoft hasn’t committed…

Continue Reading

Hackers are hiding powerful info-stealing malware in fake free VPNs downloaded from GitHub, don’t get tricked

GitHub repositories host malware disguised as tools that gamers, and privacy-seekers are likely to download The…

Continue Reading

This GitHub trick could let attackers steal secrets from major projects, and no one’s paying attention

Sysdig exposed how a trusted GitHub feature can silently hand control to attackers pull_request_target isn’t just…

Continue Reading

Github’s new Copilot AI wants to help you code and cut down on your tech debt

GitHub’s latest Copilot agent is embedded straight into the platform It’ll boot a secure dev environment…

Continue Reading

Exposed Git tokens and secrets are being hoovered up by hacker scans

GreyNoise saw a significant increase in scanning activity IPs from Singapore are looking for exposed Git…

Continue Reading