@anon
sign up
@anon
sign up
pull down to refresh
GitHub Disables The XZ Repository Following Today's Malicious Disclosure
www.phoronix.com/news/GitHub-Disables-XZ-Repo
11 sats
\
4 comments
\
@zuspotirko
30 Mar 2024
tech
related
Finding packages affected by xz vuln on Nix
3045 sats
\
6 comments
\
@jurraca
30 Mar 2024
NixOS
Microsoft GitHub is under siege as security experts claim 100k vulnerable repos
www.windowscentral.com/microsoft/microsofts-github-is-under-siege-as-security-experts-claim-over-100000-github-repositories-are-infected
191 sats
\
2 comments
\
@ch0k1
2 Mar 2024
bitcoin
GitHub suffers a cascading supply chain attack compromising CI/CD secrets
www.infoworld.com/article/3849245/github-suffers-a-cascading-supply-chain-attack-compromising-ci-cd-secrets.html
289 sats
\
2 comments
\
@ch0k1
21 Mar
security
100+ backdoored malware repos traced to single GitHub user
www.theregister.com/2025/06/05/backdoored_malware_repos
51 sats
\
1 comment
\
@Coinsreporter
5 Jun
security
XZ backdoor behavior inside OpenSSH
securelist.com/xz-backdoor-part-3-hooking-ssh/113007/
10 sats
\
0 comments
\
@ch0k1
24 Jun 2024
news
Hacker targets other hackers and gamers with backdoored GitHub code
www.bleepingcomputer.com/news/security/hacker-targets-other-hackers-and-gamers-with-backdoored-github-code/
10 sats
\
0 comments
\
@ch0k1
4 Jun
security
Security Update: EUCLEAK - Trezor
x.com/Trezor/status/1831256973242716623
20 sats
\
0 comments
\
@Rsync25
4 Sep 2024
bitcoin
Unusual events in GitHub repositories
www.sciencedirect.com/science/article/abs/pii/S0164121218300876
32 sats
\
0 comments
\
@Rsync25
17 Nov 2024
devs
NixOS and reproducible builds could have detected the xz backdoor
luj.fr/blog/how-nixos-could-have-detected-xz.html
113 sats
\
1 comment
\
@hn
23 Mar
tech
🧵 Widespread malware attack on GitHub
nitter.it/stephenlacy/status/1554697077430505473
314 sats
\
14 comments
\
@cryptocoin
3 Aug 2022
bitcoin
GitHub besieged by millions of malicious repositories in ongoing attack
arstechnica.com/security/2024/02/github-besieged-by-millions-of-malicious-repositories-in-ongoing-attack/
162 sats
\
1 comment
\
@zarko
1 Mar 2024
security
GitHub rolls out push protection on public repos
www.infoworld.com/article/3713344/github-rolls-out-push-protection-on-public-repos.html
10 sats
\
0 comments
\
@ch0k1
3 Mar 2024
opensource
GitHub MCP exploited: Accessing private repositories via MCP | Hacker News
simonwillison.net/2025/May/26/github-mcp-exploited/
236 sats
\
1 comment
\
@ch0k1
30 May
news
Backdoor in upstream xz/liblzma leading to SSH server compromise
www.openwall.com/lists/oss-security/2024/03/29/4
10 sats
\
1 comment
\
@hn
31 Mar 2024
tech
Over 100,000 Infected Repos Found on GitHub
1687 sats
\
6 comments
\
@0xbitcoiner
29 Feb 2024
security
GitHub MCP Server Vulnerability Let Attackers Access Private Repositories
cybersecuritynews.com/github-mcp-server-vulnerability/amp/
11 sats
\
0 comments
\
@ch0k1
31 May
security
GitHub incident: ongoing issues with Actions, Issues and other Git operations
www.githubstatus.com/incidents/f0mhbz9xn497
10 sats
\
1 comment
\
@hn
9 May 2023
tech
ETH removes section of their github following a state authority inquiry
github.com/ethereum/ethereum-foundation-website/commit/769b30603504b4b5e8f601f8014691a8d1821390
1236 sats
\
7 comments
\
@south_korea_ln
21 Mar 2024
bitcoin
The GitHub Actions Worm: Compromise GitHub Repos Through the Actions Dep Tree
www.paloaltonetworks.com/blog/prisma-cloud/github-actions-worm-dependencies/
3819 sats
\
5 comments
\
@k00b
17 Sep 2023
tech
Inside the failed attempt to backdoor SSH globally — that got caught by chance
doublepulsar.com/inside-the-failed-attempt-to-backdoor-ssh-globally-that-got-caught-by-chance-bbfe628fafdd
2035 sats
\
23 comments
\
@ch0k1
1 Apr 2024
security
Official NPM package for XRP infected with crypto stealing backdoor
www.aikido.dev/blog/xrp-supplychain-attack-official-npm-package-infected-with-crypto-stealing-backdoor
12 sats
\
0 comments
\
@carter
22 Apr
security
more