These fake githubs “security alerts” could actually let the hackers divert your account


  • Security researchers spot a new phishing campaign targeting Github users
  • A false GitHub account “security alert” informs users of suspicious connections
  • Notification links all point to a shaded application

Cybercriminals simulate security alerts on GitHub to bring users without distrust to install malware and lose their jobs, experts warned.

A safety researcher alias “LC4M” discovered the campaign and shared a detailed explanation in a short Thread X, noting that the attackers created a GitHub account called “Github notification”, then opened a problem to a “well -known replenishment” indicating “security alert: attempt to unusual access”.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top