Sept. 29, 2023, 11:30 a.m. |

Malwarebytes Labs blog.malwarebytes.com

Categories: Personal

Tags: dependabot


Tags: GitHub


Tags: password


Tags: attack


Tags: imitate


Tags: profile


Tags: avatar


Tags: commit


Tags: resource


Tags: dependency


We take a look at a clever attack imitating GitHub's Dependabot in order to publish rogue project updates.



(Read more...)



The post Dependabot impersonators cause trouble on GitHub appeared first on Malwarebytes Labs.

attack avatar commit dependabot dependency github imitate impersonators labs malwarebytes malwarebytes labs order password personal profile project resource rogue tags updates

Network Security Administrator

@ Peraton | United States

IT Security Engineer 2

@ Oracle | BENGALURU, KARNATAKA, India

Sr Cybersecurity Forensics Specialist

@ Health Care Service Corporation | Chicago (200 E. Randolph Street)

Security Engineer

@ Apple | Hyderabad, Telangana, India

Cyber GRC & Awareness Lead

@ Origin Energy | Adelaide, SA, AU, 5000

Senior Security Analyst

@ Prenuvo | Vancouver, British Columbia, Canada