Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (Cyborg)
  • No Skin
Collapse
Brand Logo

CIRCLE WITH A DOT

  1. Home
  2. Uncategorized
  3. I have no words to thank everyone for helping yesterday.

I have no words to thank everyone for helping yesterday.

Scheduled Pinned Locked Moved Uncategorized
opensourcemacosdevomglolgithub
6 Posts 6 Posters 0 Views
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • otaviocc@social.lolO This user is from outside of this forum
    otaviocc@social.lolO This user is from outside of this forum
    otaviocc@social.lol
    wrote last edited by
    #1

    RE: https://social.lol/@otaviocc/116076383907156741

    I have no words to thank everyone for helping yesterday.

    Great news: Yesterday on the omg.lol IRC server, folks investigated and discovered the GitHub account was part of a network of bots. These bots republish open source projects, modifying their READMEs with malicious links, and distribute Windows malware through fake builds.

    After documenting the findings, we reported everything to GitHub. Within hours, they took down the repositories and an account for violating their Terms and Code of Conduct.

    Thank you for investigating, reporting, and sending coffee. You're all amazing!

    I planned to write a blog post today, but @brennan already wrote something better than I could. You should read it:

    Link Preview Image
    The Curious Case of the Triton Malware Fork

    Today, a weird malware distribution campaign targeting users of omg.lol and Triton, an open-source macOS client of omg.lol, was found. The attack leverages the trust of GitHub, creating a malicious fork where the download link has been replaced with malware hidden in presented .zip file.

    favicon

    brennan.day (brennan.day)

    Many thanks to @brennan, @chilli, @adam, mattl, @cygnoir, @annika, @jarunmb, and everyone else who helped!

    #OpenSource #macOSDev #omglol #GitHub

    maique@social.lolM erika@social.lolE jarunmb@social.lolJ cliff538@thecanadian.socialC ireneista@adhd.irenes.spaceI 5 Replies Last reply
    2
    0
    • otaviocc@social.lolO otaviocc@social.lol

      RE: https://social.lol/@otaviocc/116076383907156741

      I have no words to thank everyone for helping yesterday.

      Great news: Yesterday on the omg.lol IRC server, folks investigated and discovered the GitHub account was part of a network of bots. These bots republish open source projects, modifying their READMEs with malicious links, and distribute Windows malware through fake builds.

      After documenting the findings, we reported everything to GitHub. Within hours, they took down the repositories and an account for violating their Terms and Code of Conduct.

      Thank you for investigating, reporting, and sending coffee. You're all amazing!

      I planned to write a blog post today, but @brennan already wrote something better than I could. You should read it:

      Link Preview Image
      The Curious Case of the Triton Malware Fork

      Today, a weird malware distribution campaign targeting users of omg.lol and Triton, an open-source macOS client of omg.lol, was found. The attack leverages the trust of GitHub, creating a malicious fork where the download link has been replaced with malware hidden in presented .zip file.

      favicon

      brennan.day (brennan.day)

      Many thanks to @brennan, @chilli, @adam, mattl, @cygnoir, @annika, @jarunmb, and everyone else who helped!

      #OpenSource #macOSDev #omglol #GitHub

      maique@social.lolM This user is from outside of this forum
      maique@social.lolM This user is from outside of this forum
      maique@social.lol
      wrote last edited by
      #2

      @otaviocc That was incredible to watch, after such disturbing news. Well done, everyone 😊

      @brennan @chilli @adam @cygnoir @annika @jarunmb

      1 Reply Last reply
      0
      • otaviocc@social.lolO otaviocc@social.lol

        RE: https://social.lol/@otaviocc/116076383907156741

        I have no words to thank everyone for helping yesterday.

        Great news: Yesterday on the omg.lol IRC server, folks investigated and discovered the GitHub account was part of a network of bots. These bots republish open source projects, modifying their READMEs with malicious links, and distribute Windows malware through fake builds.

        After documenting the findings, we reported everything to GitHub. Within hours, they took down the repositories and an account for violating their Terms and Code of Conduct.

        Thank you for investigating, reporting, and sending coffee. You're all amazing!

        I planned to write a blog post today, but @brennan already wrote something better than I could. You should read it:

        Link Preview Image
        The Curious Case of the Triton Malware Fork

        Today, a weird malware distribution campaign targeting users of omg.lol and Triton, an open-source macOS client of omg.lol, was found. The attack leverages the trust of GitHub, creating a malicious fork where the download link has been replaced with malware hidden in presented .zip file.

        favicon

        brennan.day (brennan.day)

        Many thanks to @brennan, @chilli, @adam, mattl, @cygnoir, @annika, @jarunmb, and everyone else who helped!

        #OpenSource #macOSDev #omglol #GitHub

        erika@social.lolE This user is from outside of this forum
        erika@social.lolE This user is from outside of this forum
        erika@social.lol
        wrote last edited by
        #3

        @otaviocc on the other hand I now know about Triton and I’ll try it. It looks pretty sweet.

        1 Reply Last reply
        0
        • otaviocc@social.lolO otaviocc@social.lol

          RE: https://social.lol/@otaviocc/116076383907156741

          I have no words to thank everyone for helping yesterday.

          Great news: Yesterday on the omg.lol IRC server, folks investigated and discovered the GitHub account was part of a network of bots. These bots republish open source projects, modifying their READMEs with malicious links, and distribute Windows malware through fake builds.

          After documenting the findings, we reported everything to GitHub. Within hours, they took down the repositories and an account for violating their Terms and Code of Conduct.

          Thank you for investigating, reporting, and sending coffee. You're all amazing!

          I planned to write a blog post today, but @brennan already wrote something better than I could. You should read it:

          Link Preview Image
          The Curious Case of the Triton Malware Fork

          Today, a weird malware distribution campaign targeting users of omg.lol and Triton, an open-source macOS client of omg.lol, was found. The attack leverages the trust of GitHub, creating a malicious fork where the download link has been replaced with malware hidden in presented .zip file.

          favicon

          brennan.day (brennan.day)

          Many thanks to @brennan, @chilli, @adam, mattl, @cygnoir, @annika, @jarunmb, and everyone else who helped!

          #OpenSource #macOSDev #omglol #GitHub

          jarunmb@social.lolJ This user is from outside of this forum
          jarunmb@social.lolJ This user is from outside of this forum
          jarunmb@social.lol
          wrote last edited by
          #4

          @otaviocc @brennan @chilli @adam @cygnoir @annika So glad buddy. Congratulations 🎊!

          1 Reply Last reply
          0
          • otaviocc@social.lolO otaviocc@social.lol

            RE: https://social.lol/@otaviocc/116076383907156741

            I have no words to thank everyone for helping yesterday.

            Great news: Yesterday on the omg.lol IRC server, folks investigated and discovered the GitHub account was part of a network of bots. These bots republish open source projects, modifying their READMEs with malicious links, and distribute Windows malware through fake builds.

            After documenting the findings, we reported everything to GitHub. Within hours, they took down the repositories and an account for violating their Terms and Code of Conduct.

            Thank you for investigating, reporting, and sending coffee. You're all amazing!

            I planned to write a blog post today, but @brennan already wrote something better than I could. You should read it:

            Link Preview Image
            The Curious Case of the Triton Malware Fork

            Today, a weird malware distribution campaign targeting users of omg.lol and Triton, an open-source macOS client of omg.lol, was found. The attack leverages the trust of GitHub, creating a malicious fork where the download link has been replaced with malware hidden in presented .zip file.

            favicon

            brennan.day (brennan.day)

            Many thanks to @brennan, @chilli, @adam, mattl, @cygnoir, @annika, @jarunmb, and everyone else who helped!

            #OpenSource #macOSDev #omglol #GitHub

            cliff538@thecanadian.socialC This user is from outside of this forum
            cliff538@thecanadian.socialC This user is from outside of this forum
            cliff538@thecanadian.social
            wrote last edited by
            #5

            @otaviocc @brennan @chilli @adam @cygnoir @annika @jarunmb Well done! 🙌🏻

            1 Reply Last reply
            0
            • otaviocc@social.lolO otaviocc@social.lol

              RE: https://social.lol/@otaviocc/116076383907156741

              I have no words to thank everyone for helping yesterday.

              Great news: Yesterday on the omg.lol IRC server, folks investigated and discovered the GitHub account was part of a network of bots. These bots republish open source projects, modifying their READMEs with malicious links, and distribute Windows malware through fake builds.

              After documenting the findings, we reported everything to GitHub. Within hours, they took down the repositories and an account for violating their Terms and Code of Conduct.

              Thank you for investigating, reporting, and sending coffee. You're all amazing!

              I planned to write a blog post today, but @brennan already wrote something better than I could. You should read it:

              Link Preview Image
              The Curious Case of the Triton Malware Fork

              Today, a weird malware distribution campaign targeting users of omg.lol and Triton, an open-source macOS client of omg.lol, was found. The attack leverages the trust of GitHub, creating a malicious fork where the download link has been replaced with malware hidden in presented .zip file.

              favicon

              brennan.day (brennan.day)

              Many thanks to @brennan, @chilli, @adam, mattl, @cygnoir, @annika, @jarunmb, and everyone else who helped!

              #OpenSource #macOSDev #omglol #GitHub

              ireneista@adhd.irenes.spaceI This user is from outside of this forum
              ireneista@adhd.irenes.spaceI This user is from outside of this forum
              ireneista@adhd.irenes.space
              wrote last edited by
              #6

              @otaviocc @brennan @chilli @adam @cygnoir @annika @jarunmb thanks for catching and reporting this. "update your threat models", as they say...

              1 Reply Last reply
              0
              • R relay@relay.publicsquare.global shared this topic
                R relay@relay.mycrowd.ca shared this topic
              Reply
              • Reply as topic
              Log in to reply
              • Oldest to Newest
              • Newest to Oldest
              • Most Votes


              • Login

              • Login or register to search.
              • First post
                Last post
              0
              • Categories
              • Recent
              • Tags
              • Popular
              • World
              • Users
              • Groups