Hackers are using fake repositories on GitHub to distribute malware and steal personal data and cryptocurrency, according to security firm Kaspersky.
These deceptive repositories mimic legitimate open-source projects and trick unsuspecting developers and merchants.
The malware distributed through these repositories includes remote access trojans, clipboard hijackers, and data-extracting software, which allow the attackers to access sensitive information such as browser histories, cryptocurrency wallet details, and login credentials.
Kaspersky advises users to exercise extreme caution when downloading code from GitHub and recommends implementing maximum security measures to prevent falling victim to these types of attacks.