April 11, 2024, 1:14 p.m. | SC Staff

SC Magazine feed for Risk Management www.scmagazine.com

Malware-laced GitHub repositories using popular names and topics are being advanced by threat actors through automated updates and fraudulent stars meant to manipulate the leading software developer platform's search rankings as part of a new open-source supply chain attack, The Hacker News reports.

advanced attack automated developer developer platform distribution exploited fraudulent github github repositories hacker malware malware distribution names network security platform popular reports repositories search software software developer stars supply supply chain supply chain attack the hacker news third-party-code threat threat actors topics updates

CyberSOC Technical Lead

@ Integrity360 | Sandyford, Dublin, Ireland

Cyber Security Strategy Consultant

@ Capco | New York City

Cyber Security Senior Consultant

@ Capco | Chicago, IL

Sr. Product Manager

@ MixMode | Remote, US

Corporate Intern - Information Security (Year Round)

@ Associated Bank | US WI Remote

Senior Offensive Security Engineer

@ CoStar Group | US-DC Washington, DC