Researchers uncover ring of GitHub accounts promoting 300 backdoored apps
A security researcher has uncovered a ring of malicious GitHub accounts promoting over 300 backdoored Windows, Mac, and Linux applications and software libraries. The accounts that did not host backdoored apps were used to “star” or “watch” the malicious repositories and help boost their popularity in GitHub’s search results. The DFIR.it investigation into this network of backdoored apps started when researchers spotted a malicious version of the JXplorer LDAP browser.
Source: www.zdnet.com