FakeGit malware campaign returns with 17,610 malicious GitHub repos

Summary

The FakeGit malware campaign has resurfaced, utilizing over 17,610 malicious repositories on GitHub. Initially distributing the StealC infostealer, the campaign has now shifted to pushing the SmartLoader malware.

IFF Assessment

FOE

This article details a malware campaign actively distributing malicious software, posing a direct threat to cybersecurity defenders.

Defender Context

The resurgence of the FakeGit campaign highlights the persistent threat of supply chain attacks via code repositories. Defenders should be vigilant about the provenance of code pulled from platforms like GitHub and implement robust code scanning and integrity checks to mitigate the risk of malware infection.

Read Full Story →