GitHub Repojacking Bug Could've Allowed Attackers to Takeover Other Users' Repositories

Cloud-based repository hosting service GitHub has addressed a high-severity security flaw that could have been exploited to create malicious repositories and mount supply chain attacks. The RepoJacking technique, disclosed by Checkmarx, entails a bypass of a protection mechanism called popular repository namespace retirement, which aims to prevent developers from pulling unsafe repositories with

from The Hacker News https://ift.tt/4ochWlV
via IFTTT

Comments

Popular posts from this blog

Experts Reveal Over 150 Ways to Steal Control of 58 Android Stalkerware Apps

Critical Bugs Reported in Popular Open Source PJSIP SIP and Media Stack