FakeGit malware campaign returns with 17,610 malicious GitHub repos
Summary
The FakeGit malware campaign has resurfaced, utilizing over 17,610 malicious repositories on GitHub. Initially distributing the StealC infostealer, the campaign has now shifted to pushing the SmartLoader malware.
IFF Assessment
FOE
This article details a malware campaign actively distributing malicious software, posing a direct threat to cybersecurity defenders.
Defender Context
The resurgence of the FakeGit campaign highlights the persistent threat of supply chain attacks via code repositories. Defenders should be vigilant about the provenance of code pulled from platforms like GitHub and implement robust code scanning and integrity checks to mitigate the risk of malware infection.