More

    These fake GitHub “security alerts” could actually let hackers hijack your account




    • Security researchers spot new phishing campaign targeting GitHub users
    • A fake “security alert” GitHub account was notifying users of suspicious logins
    • The links in the notification all point to a shady app

    Cybercriminals are faking security alerts on GitHub to get unsuspecting users to install malicious applications and lose their work, experts have warned.

    A security researcher alias “LC4M” discovered the campaign and shared a detailed explanation in a short X thread, noting the attackers created a GitHub account called “GitHub Notification”, and then opened an issue to a “well known security repo” stating “Security Alert: Unusual Access Attempt”.

    https://cdn.mos.cms.futurecdn.net/CT482eMSRL8PagRtuBVYNd-1200-80.jpeg



    Source link

    Latest articles

    spot_imgspot_img

    Related articles

    Leave a reply

    Please enter your comment!
    Please enter your name here

    spot_imgspot_img