"Clever 'GitHub Scanner' Campaign Abusing Repos to Push Malware"
"Clever 'GitHub Scanner' Campaign Abusing Repos to Push Malware"
A new phishing campaign is using GitHub repositories to spread the "Lumma Stealer" password-stealing malware to those who frequent or receive email notifications from an open source project repository. It involves a malicious GitHub user opening a new "issue" on an open source repository, claiming that the project has a "security vulnerability," and encouraging others to visit a counterfeit "GitHub Scanner" domain. The domain is actually not associated with GitHub and lures users into installing Windows malware.