GitHub Notification Emails Hijacked to Send Malware
https://ianspence.com/blog/2024-09/github-email-hijack/
=> More informations about this toot | More toots from ecn@mastodon.social
@ecn Great post! Re: The end of your post, regarding the LummaStealer MaaS - If you're ever curious about how infostealer vendors fit into the ransomware economy, this write up from the UK NCSC is a great introduction: https://www.ncsc.gov.uk/whitepaper/ransomware-extortion-and-the-cyber-crime-ecosystem
=> More informations about this toot | More toots from cxiao@infosec.exchange
@ecn good thing no one opens those.
=> More informations about this toot | More toots from nitinkhanna@mastodon.social
@ecn I literally just saw a copy of that email in my inbox...
=> More informations about this toot | More toots from ryanc@infosec.exchange
@ecn great analysis! I received this yesterday and I also received two other, similar emails, a couple of days before:
=> View attached media | View attached media
=> More informations about this toot | More toots from lasagnasec@infosec.exchange
@ecn
The attacker quickly deletes the issue
Is that possible? I don't see the delete option for issues I created on foreign repos. It seems that only repo owners can delete issues.
=> More informations about this toot | More toots from mimi89999 This content has been proxied by September (3851b).Proxy Information
text/gemini