In Cybersecurity Minute Episode 26, Chris Hughes details a recent cyber attack on a cloned version of GitHub repositories.
Highlights
00:08 — GitHub recently discovered thousands of maliciously compromised repositories. While initial reports estimated the number of compromised repositories to be around 35,000, the number was inflated by cloned copies of these projects with malicious code inserted.
00:48 — The malicious code created a backdoor vulnerability into compromised systems, an increasingly common tactic among malicious actors.
01:29 — While the timeline isn’t entirely clear, it appears to have occurred within the past month.
01:49 — GitHub quickly quarantined the affected repositories and published best practices to combat the code.





