🦋 🚨 We’re seeing a widespread GitHub campaign using fake VS Code alerts + Google redirects to route developers to attacker infrastructure.
Uncategorized
1
Posts
1
Posters
0
Views
-
We’re seeing a widespread GitHub campaign using fake VS Code alerts + Google redirects to route developers to attacker infrastructure.The flow adapts based on cookies and fingerprints users before serving a second-stage attack. Not your average phishing link:
Widespread GitHub Campaign Uses Fake VS Code Security Alerts...
Widespread GitHub phishing campaign uses fake Visual Studio Code security alerts in Discussions to trick developers into visiting malicious website.
Socket (socket.dev)
-
R relay@relay.infosec.exchange shared this topic