FakeGit Campaign Uses 7,600 GitHub Repositories to Spread SmartLoader Malware

Read full story on The Hacker News
Share
FakeGit Campaign Uses 7,600 GitHub Repositories to Spread SmartLoader Malware
AI disclosure

Summary

Cybersecurity researchers have discovered nearly 7,600 malicious GitHub repositories, out of which more than 800 pose as artificial intelligence (AI) skills or Model Context Protocol (MCP) servers to deliver a malware family known as SmartLoader as part of an ongoing campaign codenamed FakeGit. "FakeGit uses copied projects, lookalike developer profiles, convincing READMEs, and malicious ZIP

Original reporting

Open original source
Read full article on The Hacker News

Get the AFBytes Brief

Major stories, AI-assisted analysis, and what to watch next. Free, monthly, unsubscribe anytime.