GitHub is under automated attack by millions of cloned repositories filled with malicious code

GitHub is under automated attack by millions of cloned repositories filled with malicious code



GitHub has become an important resource for programmers around the world and a comprehensive knowledge base and repository for open source coding projects, data storage, and code management. However, the site is currently under an automated attack that involves the cloning and creation of a large number of malicious code repositories, and while the developers have worked to remove the affected repositories, a significant portion of them are said to have survived and more are being added on a regular basis uploaded base.

An unknown attacker has managed to create and deploy an automated process that forks and clones existing repositories while adding his own malicious code hidden under seven layers of obfuscation (via Ars Technica). These fraudulent repositories are difficult to distinguish from their legitimate counterparts, and some users, unaware of the malicious nature of the code, fork the affected repositories themselves, unintentionally increasing the scale of the attack.



Source link

Comments

No comments yet. Why don’t you start the discussion?

Leave a Reply

Your email address will not be published. Required fields are marked *