
Security provider Apiiro’s research and data teams report a substantial surge in the attack since its inception in May of the previous year.
Initially modest in scale, the attack has grown in size and sophistication, presenting challenges for GitHub’s security measures.
The attack’s intrigue lies in the fusion of sophisticated automated methods and exploiting simple human nature. While obfuscation techniques become more intricate, the attackers heavily rely on social engineering to confuse developers, compelling them to select the malicious code.
As of now, GitHub has not issued a direct comment on the ongoing attack. However, the platform released a general statement reassuring users of its commitment to security. The platform employs manual reviews, at-scale detection utilizing machine learning, and continuously evolves to counter adversarial attacks.
Source: Original Post
“An interesting youtube video that may be related to the article above”
Views: 0