
- GitHub repositories host malware disguised as tools that gamers, and privacy-seekers are likely to download
- The fake VPN campaign drops malware straight into AppData and hides it from plain view
- Process injection through MSBuild.exe allows this malware to operate without triggering obvious alarms
Security experts have warned of an emerging new cyber threat involving fake VPN software hosted on GitHub.