Tag: github
-
Github reagiert auf KI-Flut: Hohe Bug-Bounty-Prämien bald nur noch für Profis
Github überarbeitet sein Bug-Bounty-Programm. Wer sich nur auf KI verlässt und sich wenig Mühe gibt, bekommt künftig geringere Prämien. First seen on golem.de Jump to article: www.golem.de/news/github-reagiert-auf-ki-flut-hohe-bug-bounty-praemien-bald-nur-noch-fuer-profis-2607-211255.html
-
Attackers Weaponize GitHub Actions Runners to Target cPanel and WHM Servers
Cybersecurity researchers have shed light on a large-scale campaign that has turned compromised GitHub repositories into distributed attack infrastructure designed to target cPanel and WebHost Manager (WHM) instances.The activity involves malicious Packagist development versions spanning 10 packages associated with a legitimate PHP and DevOps developer, dinushchathurya, between July 12 and 13, First seen on thehackernews.com…
-
Critical FreePBX Flaws Let Unauthenticated Attackers Execute Code and Take Over Administrator Accounts
Critical security vulnerabilities in FreePBX have been disclosed, exposing organizations to risks of unauthenticated remote code execution and the takeover of administrator accounts. These flaws, tracked under GitHub advisories GHSA-37j8-fhxx-9vhp and GHSA-g27h-xf3q-h3rm, affect FreePBX versions 16 and 17, carrying a CVSS v4 base score of 9.3, which highlights their severity. Security researchers warn that these…
-
Hackers Turn GitHub Actions Into a Global Botnet for Attacking Web Hosting Servers
Hackers are abusing compromised GitHub repositories and GitHub Actions workflows to build a de facto global botnet that scans and exploits web hosting servers, with a primary focus on cPanel and WHM deployments. The campaign first surfaced when malicious development versions were discovered across ten Packagist PHP packages tied to a legitimate PHP and DevOps…
-
GitHub revamps bug bounty program with new VIP tier, payout changes
GitHub is changing its bug bounty program to reward higher-quality vulnerability reports and reduce low-effort submissions, including AI-generated reports. The changes will … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/07/23/github-bug-bounty-program-changes/
-
GitHub Cuts Public Bug Bounty Payouts, Moves Top Rewards to VIP Tier
Beginning July 27, 2026, GitHub will cut public bug bounty payouts by at least half at every severity level. Critical findings will drop from $20,000-$30,000+ to a fixed $10,000, while its permanent invite-only VIP tier will pay $30,000 or more.Reports filed before that date, including those already in GitHub’s growing triage queue, will retain the…
-
FakeGit verbreitet SmartLoader über Tausende GitHub-Projekte
In der Kampagne FakeGit verbreiten gefälschte GitHub-Repositorys und KI-Server die Schadsoftware SmartLoader. Auch KI-Agenten fallen auf den Trick herein. First seen on it-daily.net Jump to article: www.it-daily.net/it-sicherheit/cybercrime/github-projekte-fakegit
-
Gefälschte KI-Tools machen ChatGPT, Claude und Gemini zu unfreiwilligen Helfern von Cyberkriminellen
Eine neue Angriffsmethode zeigt, dass künftig nicht mehr nur Menschen auf Phishing oder manipulierte Downloads hereinfallen sondern auch KI-Agenten. Sicherheitsforscher von Island haben eine groß angelegte Kampagne mit dem Namen <> aufgedeckt, bei der Angreifer tausende gefälschte GitHub-Repositories erstellen, um sowohl Entwickler als auch KI-Assistenten zur Installation von Malware zu verleiten. Die Forscher bezeichnen […]…
-
FakeGit campaign uses 7,600 GitHub repos to push SmartLoader malware
A large-scale operation dubbed ‘FakeGit’ is pushing SmartLoader and StealC malware through 7,600 malicious GitHub repositories that accumulated more than 14 million downloads. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/fakegit-campaign-uses-7-600-github-repos-to-push-smartloader-malware/
-
AI agents tricked into recommending malicious GitHub repositories
Roughly 7,600 malicious GitHub repositories were uncovered, more than 800 of them posing as AI Skills or Model Context Protocol (MCP) servers, in a wave that peaked in April … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/07/21/github-repos-malware-campaign-fakegit-ai-agents/
-
AsyncAPI Supply Chain Attack Deploys Miasma Backdoor Through Trusted npm Workflows
AsyncAPI’s npm ecosystem suffered a coordinated supply chain compromise on July 14, 2026, delivering a Miasma”‘associated Node.js backdoor through trusted GitHub Actionsdriven release workflows and exposing high”‘value developer and CI/CD environments to remote access, credential theft, and further lateral movement. Malicious versions were shipped for @asyncapi/generator@3.3.1, @asyncapi/generator-helpers@1.1.1, @asyncapi/generator-components@0.7.1, and @asyncapi/specs@6.11.2 and 6.11.2-alpha.1, together accounting for…
-
AgentBaiting Uses Fake AI Skills and MCP Servers to Deliver SmartLoader and StealC Malware
AgentBaiting is the clearest sign yet that AI agents and their capability ecosystems have become a first”‘class malware delivery surface, with FakeGit’s 7,600″‘repo operation pushing SmartLoader and StealC directly into AI Skills and MCP workflows. By turning agent”‘readable READMEs, public AI registries, and GitHub trust signals into a weaponized “AI capability supply chain,” attackers now…
-
FakeGit Campaign Uses 7,600 GitHub Repositories to Spread SmartLoader Malware
Cybersecurity researchers have discovered nearly 7,600 malicious GitHub repositories, out of which more than 800 pose as artificial intelligence (AI) skills or Model Context Protocol (MCP) servers to deliver a malware family known as SmartLoader as part of an ongoing campaign codenamed FakeGit.”FakeGit uses copied projects, lookalike developer profiles, convincing READMEs, and malicious ZIP First…
-
LegacyHive Windows Zero-Day Lets Attackers Hijack Administrator Registry Hives
A newly disclosed Windows local privilege-escalation vulnerability, dubbed LegacyHive, could allow a standard user to load and modify the per-user registry classes hive of an administrator account. The proof-of-concept (PoC), published by researcher NightmareEclipse under the MSNightmare/LegacyHive GitHub repository, abuses Windows’ User Profile Service to mount a target user’s UsrClass.dat hive into a registry location…
-
New Agent Data Injection Attack Can Make AI Agents Misclick or Run Attacker Commands
Ask an AI agent to summarize the reviews on a product page, and a single planted review can make it click “Buy Now” instead. Ask a coding assistant to apply a maintainer’s fix from a GitHub thread, and a fake comment can make it run a stranger’s command on your computer.Neither trick hijacks the agent’s…
-
Nearly 300 GitHub repos pose as legit software to push malware
A threat actor has published hundreds of fake GitHub repositories impersonating legitimate software and security projects to distribute infostealer malware. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/nearly-300-github-repos-pose-as-legit-software-to-push-malware/
-
Inaktive GitHub-Konten für Spionage genutzt
Tags: githubDatadog Security Labs warnt vor Kampagnen, die mittels inaktiver GitHub-Konten und kompromittierter Token gezielt Firmenstrukturen auskundschaften. First seen on it-daily.net Jump to article: www.it-daily.net/it-sicherheit/cybercrime/inaktive-github-konten-spionage
-
Datenpanne auf Github: US-Cyberbehörde hat eigene Security-Empfehlungen missachtet
Monatelang standen geheime Daten der Cisa öffentlich auf Github. Jetzt gesteht die Behörde, ihre eigenen Empfehlungen nicht eingehalten zu haben. First seen on golem.de Jump to article: www.golem.de/news/us-cyberbehoerde-echte-datenpanne-lehrt-cisa-umgang-mit-datenpannen-2607-210793.html
-
Software-Fertigung im Fadenkreuz
Am 18. Mai 2026 injizierte eine automatisierte Angriffskampagne innerhalb von nur sechs Stunden 5.718 bösartige Commits in 5.561 GitHub Repositories. First seen on it-daily.net Jump to article: www.it-daily.net/it-sicherheit/cloud-security/software-fertigung-im-fadenkreuz
-
Your coding agent says no in chat and yes in the code
Tags: githubMillions of developers share their keyboard with GitHub Copilot. Inside Visual Studio Code, it opens their files, writes and edits code, runs scripts, and reworks its own … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/07/09/github-coding-agent-jailbreak/
-
GitHub Copilot IDE Coding Agents Vulnerable to Workflow-Level Jailbreak Attacks
GitHub Copilot’s new coding agents, which are integrated into IDEs, are susceptible to a specific type of >>workflow-level<< jailbreak attacks. These attacks can bypass chat refusals, allowing agents to generate harmful code while performing standard software development tasks unwittingly. According to Arxiv, researchers who studied Copilot in Visual Studio Code discovered that models that successfully…
-
Open-source collaboration is growing worldwide and putting pressure on maintainers
Developers are pushing code and opening pull requests across economy borders at a rate GitHub has rarely seen. Outbound collaboration, the sum of git pushes and pull requests … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/07/09/github-open-source-collaboration/
-
Attackers Can Generate Duplicate Verified GitHub Commits Using Signature Malleability
Attackers can silently clone “Verified” GitHub commits by abusing signature malleability in Git’s commit-signing formats, creating byte”‘different commits with identical content, valid signatures, and fresh “Verified” badges under new hashes. This breaks the long”‘standing assumption that a verified commit hash is a unique, immutable identifier for a specific piece of signed content and exposes hash”‘based…
-
GitHub ‘Verified’ Commits Can Be Rewritten Into New Hashes Without Breaking Signatures
New research shows that a signed Git commit’s hash is not the one-of-a-kind name that much of the software world assumes it to be. Given any signed commit, someone without the signing key can mint a second commit with the same files, author, and date, and a valid signature, GitHub still stamps “Verified.”Everything a reviewer…
-
GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code
An AI coding assistant that refuses to answer a dangerous request in its chat box can answer it anyway if the same request is broken into small, ordinary-looking steps inside a code editor. That is the finding of a new study of GitHub Copilot by researchers Abhishek Kumar and Carsten Maple.The models they tested through…
-
GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code
An AI coding assistant that refuses to answer a dangerous request in its chat box can answer it anyway if the same request is broken into small, ordinary-looking steps inside a code editor. That is the finding of a new study of GitHub Copilot by researchers Abhishek Kumar and Carsten Maple.The models they tested through…
-
Agentic Workflows: Github-KI leakt Daten aus privaten Repos
Die Agentic Workflows von Github erweisen sich beim Datenklau aus privaten Repositorys offenbar als sehr kooperativ. Ein Fix ist nicht zu erwarten. First seen on golem.de Jump to article: www.golem.de/news/agentic-workflows-github-ki-leakt-daten-aus-privaten-repos-2607-210650.html
-
GitLost Vulnerability Lets Attackers Trick GitHub AI Agent Into Leaking Private Repos
A critical vulnerability known as >>GitLost<< has been discovered in GitHub's newly introduced Agentic Workflows by Noma Labs. This flaw allows unauthenticated attackers to exfiltrate sensitive data from private repositories. It demonstrates how AI-driven automation within development pipelines can be manipulated to bypass conventional access controls and leak confidential information across repository boundaries. GitLost Vulnerability…
-
‘GitLost’ Flaw Leaks Private Data From GitHub’s Agentic Workflows
The flaw allows an unauthenticated attacker to craft a GitHub Issue in an org’s public repository and then silently pull data from its private repos, too. First seen on darkreading.com Jump to article: www.darkreading.com/cyber-risk/gitlost-leaks-private-data-github-agentic-workflows
-
Public GitHub Issue Could Trick GitHub Agentic Workflows Into Leaking Private Repo Data
A public issue can trick GitHub Agentic Workflows into leaking the contents of an organization’s private repositories, researchers at Noma Security have shown.The attacker needs only to open a normal-looking issue on a public repository, with no stolen credentials and no access to the organization. If that organization has given the agent read access across…

