TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

If you work at GitHub security, you are bad at your job

13 pointsby joshdotsmith4 months ago
This is getting to be embarrassing. It’s been almost a week of trying to alert GitHub to multiple spoofed repositories serving malware. Everyone appears to be sleeping on the job. The malware is easily compared to known IoCs, so it’s even easily automatable.<p>Can someone at GitHub wake the hell up already and stop serving malware?<p>Here’s an obvious one: https:&#x2F;&#x2F;github.com&#x2F;ojas1103&#x2F;CircleProgressKit<p>And others: https:&#x2F;&#x2F;github.com&#x2F;AkashiKensei&#x2F;Zenix-Account-Creator<p>https:&#x2F;&#x2F;github.com&#x2F;MinhDuong2571&#x2F;DNSrce<p>https:&#x2F;&#x2F;github.com&#x2F;xcwv667&#x2F;eth-input-call-data-builder<p>https:&#x2F;&#x2F;github.com&#x2F;ForgedRice&#x2F;deepseek-api-client<p>https:&#x2F;&#x2F;github.com&#x2F;Losnunes&#x2F;SHOOTER<p>https:&#x2F;&#x2F;github.com&#x2F;Alexbochechudo&#x2F;encode-reactjs-intermediate-2024<p>https:&#x2F;&#x2F;github.com&#x2F;Dawsandos&#x2F;monster-energy-theme&#x2F;releases<p>https:&#x2F;&#x2F;github.com&#x2F;popopopopopopopopopopopopopopo&#x2F;TuneText<p>https:&#x2F;&#x2F;github.com&#x2F;Cynicave&#x2F;Crunchyroll-Account-Checker

no comments

no comments