
- Github repositories are being infected with malware
- Trusted repositories can bypass secure web gateways
- Github comments are also being used to hide malicious files
In a new phishing campaign detected by Cofense Intelligence, threat actors used a novel approach by leveraging trusted GitHub repositories to deliver malware. The campaign is aimed at exploiting the inherent trust many organizations place in GitHub as a developer platform.