PANews reported on March 1 that according to News.bitcoin, a stealthy malware campaign is hijacking crypto wallets by embedding malicious code in fake open source projects on Github, tricking developers into executing hidden payloads.
A cyberattack campaign called Gitvenom has been targeting Github users by embedding malicious code into seemingly legitimate open source projects. Discovered by researchers Georgy Kucherin and Joao Godinho, the operation sees cybercriminals create fraudulent repositories that mimic real software tools. The malicious code is embedded differently depending on the programming language used in the fake project.
