Blog | G5 Cyber Security

Github Repository Owners Targeted by Data-Stealing Malware

Phishing emails zeroed in on developers who own Github repositories were infecting victims with malware. Malware called Dimnie has been in circulation since 2014 targeting primarily Russian-speaking targets. Palo Alto Networks says it’s unknown how widespread the January campaign was or why developers were targeted. Dimnie specializes in stealth, disguising its requests to the command and control infrastructure in a GET request to a defunct Google service called Google PageRank. The same tactic is used when exfiltrating data is camouflaged in a POST request to Google.

Source: https://threatpost.com/github-repository-owners-targeted-by-data-stealing-malware/124656/

Exit mobile version