Skip to main content
← All Articles

Tag

#GitHub

52 articles

Advertisement

MEDIUM
Supply Chain

TeamPCP Hackers Arrested in Australia Over Supply Chain Attacks

Australian Federal Police arrest two men linked to TeamPCP, a cybercrime syndicate behind major software supply chain attacks and data extortion.

Runtime Rebel Intel
3 min read · Sep 1, 2026
INFO
Supply Chain

GitHub and PyPI Policy Updates Target Supply Chain Security

GitHub and PyPI introduce new restrictions to thwart supply chain attacks, including a Dependabot cooldown and limits on historical package file uploads.

Runtime Rebel Intel
4 min read · Jul 27, 2026
GitHub Dependabot 3-Day Cooldown: Mitigating Supply Chain Attacks
INFO
Supply Chain

GitHub Dependabot 3-Day Cooldown: Mitigating Supply Chain Attacks

GitHub introduces a 3-day cooldown for Dependabot to prevent the rapid adoption of malicious packages, enhancing supply chain security for developers.

Runtime Rebel Intel
4 min read · Jul 27, 2026
INFO
Supply Chain

GitHub and PyPI Time-Based Defenses Against Supply Chain Attacks

GitHub and PyPI introduce time-based delays in Dependabot to mitigate supply chain attacks by preventing the immediate ingestion of malicious packages.

Runtime Rebel Intel
4 min read · Jul 26, 2026
GitHub Adjusts Bug Bounty: Impact on Vulnerability Disclosure
INFO
Threat Intel

GitHub Adjusts Bug Bounty: Impact on Vulnerability Disclosure

GitHub is halving public bug bounty payouts and shifting top rewards to an invite-only VIP program, impacting vulnerability research and disclosure.

Runtime Rebel Intel
4 min read · Jul 22, 2026
HIGH
Malware

FakeGit Campaign Leverages 7,600 GitHub Repos to Distribute SmartLoader, StealC

Analysis of the FakeGit campaign distributing SmartLoader and StealC malware via over 7,600 deceptive GitHub repositories, impacting millions of downloads.

Runtime Rebel Intel
4 min read · Jul 22, 2026

Advertisement

FakeGit Campaign Exploits GitHub for SmartLoader Malware
HIGH
Malware

FakeGit Campaign Exploits GitHub for SmartLoader Malware

Analysis of the FakeGit campaign leveraging 7,600 GitHub repositories, including AI/MCP lures, to distribute SmartLoader malware. Learn detection and mitigation.

Runtime Rebel Intel
5 min read · Jul 20, 2026
HIGH
Malware

Malicious GitHub Repositories: Infostealer Distribution Threat

Threat actors are leveraging nearly 300 fake GitHub repositories, impersonating legitimate software, to distribute infostealer malware.

Runtime Rebel Intel
4 min read · Jul 14, 2026
HIGH
Threat Intel

CISA GitHub Leak: Lessons from AWS Govcloud Credential Exposure

Analysis of CISA's recent GitHub leak, detailing the exposure of AWS Govcloud keys and internal credentials, and providing critical lessons for cloud security.

Runtime Rebel Intel
4 min read · Jul 13, 2026
MEDIUM
Threat Intel

GitHub API Abuse: Detecting Ghost Account Reconnaissance Campaigns

Threat actors are leveraging thousands of ghost accounts to map GitHub organizations via API abuse, facilitating future targeted supply chain attacks.

Runtime Rebel Intel
4 min read · Jul 11, 2026
GitHub API Abuse: Attackers Map Corporate Orgs via Dormant Accounts
MEDIUM
Threat Intel

GitHub API Abuse: Attackers Map Corporate Orgs via Dormant Accounts

Datadog Security Labs warns of systematic GitHub API enumeration campaigns using dormant accounts and compromised OAuth tokens to map corporate organizations.

Runtime Rebel Intel
4 min read · Jul 9, 2026
Cordyceps CI/CD Flaws: Supply Chain Attacks on GitHub Repositories
HIGH
Supply Chain

Cordyceps CI/CD Flaws: Supply Chain Attacks on GitHub Repositories

Novee Security uncovered Cordyceps, a critical CI/CD workflow flaw exposing over 300 GitHub repositories to supply chain compromise, affecting major organizations.

Runtime Rebel Intel
4 min read · Jun 24, 2026
Novo Nordisk Breach: Securing Secrets in GitHub Development Pipelines
MEDIUM
Supply Chain

Novo Nordisk Breach: Securing Secrets in GitHub Development Pipelines

Analysis of the Novo Nordisk GitHub token leak and why secrets management must transition from static tools to identity-based security frameworks.

Runtime Rebel Intel
4 min read · Jun 19, 2026
GitHub to Disable npm Install Scripts by Default in Version 12
MEDIUM
Supply Chain

GitHub to Disable npm Install Scripts by Default in Version 12

GitHub announces breaking changes for npm v12, disabling install scripts by default to prevent malicious code execution and enhance supply chain security.

Runtime Rebel Intel
4 min read · Jun 11, 2026
HIGH
Malware

Miasma Worm Source Code Briefly Leaked on GitHub

Analysis of the Miasma worm source code leak on GitHub, a credential-stealing framework targeting open-source ecosystems via supply-chain attacks.

Runtime Rebel Intel
4 min read · Jun 10, 2026
HIGH
Supply Chain

GitHub Supply Chain Disruption: Microsoft Repos Abused to Host Malware

GitHub recently disabled 73 official Microsoft repositories after they were targeted in a massive campaign pushing password-stealing malware to developers.

Runtime Rebel Intel
4 min read · Jun 9, 2026
Miasma Compromises 73 Microsoft GitHub Repos: Incident Analysis
HIGH
Supply Chain

Miasma Compromises 73 Microsoft GitHub Repos: Incident Analysis

Microsoft restores some GitHub repositories after 73 projects were hit by Miasma's supply chain attack to inject information stealers. Learn detection steps.

Runtime Rebel Intel
4 min read · Jun 9, 2026
HIGH
Vulnerabilities

VS Code One-Click GitHub Token Theft via URI Handler Exploitation

A flaw in Visual Studio Code allows attackers to steal GitHub authentication tokens with a single click. Learn the technical details and mitigation steps.

Runtime Rebel Intel
4 min read · Jun 4, 2026
GitHub.dev One-Click Attack: Stealing OAuth Tokens via VS Code
HIGH
Vulnerabilities

GitHub.dev One-Click Attack: Stealing OAuth Tokens via VS Code

New research reveals a one-click exploit in GitHub.dev and VS Code that allows attackers to steal full GitHub OAuth tokens and access private repositories.

Runtime Rebel Intel
4 min read · Jun 3, 2026
Megalodon Malware: GitHub Repo Compromise & Secret Theft
HIGH
Supply Chain

Megalodon Malware: GitHub Repo Compromise & Secret Theft

Analysis of the Megalodon malware campaign, which compromised over 5,500 GitHub repositories in six hours to steal developer credentials and sensitive secrets.

Runtime Rebel Intel
4 min read · May 26, 2026
HIGH
Supply Chain

TeamPCP Supply Chain Attack Targets Microsoft SDKs and GitHub

TeamPCP expands its supply chain campaign to trojanize official Microsoft Python SDKs and infiltrate GitHub, requiring immediate dependency audits.

Runtime Rebel Intel
3 min read · May 25, 2026
HIGH
Supply Chain

Megalodon Supply Chain Attack Infects 5,500+ GitHub Repositories

Attackers used automated commits to inject malicious GitHub Actions workflows into 5,500+ repositories, targeting CI/CD secrets and sensitive tokens.

Runtime Rebel Intel
4 min read · May 25, 2026
Packagist Supply Chain Attack: 8 Packages Deliver Linux Malware
HIGH
Supply Chain

Packagist Supply Chain Attack: 8 Packages Deliver Linux Malware

Security researchers identified a supply chain attack on Packagist involving eight infected packages that deploy Linux malware via GitHub Releases URLs.

Runtime Rebel Intel
3 min read · May 23, 2026
npm Staged Publishing: New 2FA Controls Prevent Supply Chain Attacks
MEDIUM
Supply Chain

npm Staged Publishing: New 2FA Controls Prevent Supply Chain Attacks

GitHub introduces staged publishing for npm, requiring manual 2FA approval for package releases to mitigate malicious automated updates and account takeovers.

Runtime Rebel Intel
4 min read · May 23, 2026