CyberSecurity updates
2025-02-09 06:19:55 Pacfic

Lumma Stealer Distributed through GitHub Infrastructure - 6d

This cluster describes a sophisticated malware campaign distributing Lumma Stealer, a data-stealing malware, through GitHub infrastructure. The campaign also involved other malware variants, including SectopRAT, Vidar, and Cobeacon. The attackers abused GitHub’s release infrastructure for initial access and utilized Tactics, Techniques and Procedures (TTPs) that exhibit significant overlaps with those used by the Stargazer Goblin group.

Git Credential Exposure Vulnerabilities - 12d
Git Credential Exposure Vulnerabilities

Multiple vulnerabilities in Git’s credential retrieval protocol have been discovered which could allow attackers to access user credentials. These flaws stem from the improper handling of messages within Git’s credential protocol affecting tools like GitHub Desktop, Git Credential Manager, and Git LFS. Successful exploitation of these flaws can lead to credential exposure.