
Over 290 Fake GitHub Repositories Distribute Infostealers to Steal User Data
CybersecurityMalwareSocialEngineeringDataTheftGitHub
Over 290 fake GitHub repositories masquerading as legitimate security, developer, or tool provider projects were identified distributing infostealers to exfiltrate user data. The repositories impersonated offerings from security vendors, tool manufacturers, and other companies to deceive developers and security professionals. No specific threat actors, dates, or technical details about the malware strains were disclosed in the report. The campaign targets users who download or interact with these malicious repositories under false pretenses. The impact involves unauthorized data access and potential credential theft from affected systems.