Get all your news in one place.
100's of premium titles.
One app.
Start reading
TechRadar
TechRadar
Sead Fadilpašić

Watch out - a fake security researcher is pushing malware disguised as zero-day PoC

Magnifying glass enlarging the word 'malware' in computer machine code

Cybersecurity researchers have found multiple accounts on GitHub and social media platforms claiming to distribute proof-of-concept (PoC) exploits for a number of zero-day vulnerabilities allegedly found in popular software. However, a deeper inspection uncovered that all of the accounts were fake, and that the PoCs were nothing more than hidden malware.

The news was broken by cybersecurity researchers from VulnCheck, which said that unnamed threat actors created a network of accounts on both GitHub, and Twitter, belonging to fake cybersecurity researchers. These accounts were using profile pictures belonging to actual security experts, which led VulnCheck to believe that whoever was behind the attack went to great lengths to establish some credibility.

Sign up to read this article
Read news from 100's of titles, curated specifically for you.
Already a member? Sign in here
Related Stories
Top stories on inkl right now
One subscription that gives you access to news from hundreds of sites
Already a member? Sign in here
Our Picks
Fourteen days free
Download the app
One app. One membership.
100+ trusted global sources.