GitHub comments abused to push password stealing malware masked as fixes GitHub comments abused to push password stealing malware masked as fixes GitHub is being abused to distribute the Lumma Stealer information-stealing malware as fake fixes posted in project comments. [...] Read More September 1, 2024 GitHub is being abused to distribute the Lumma Stealer information-stealing malware as fake fixes posted in project comments. […] Read More About The Author Read moreBuilding cyber skills and roles from CyBOK foundations See author's posts Related Post navigation Previous: North Korean Hackers Deploy FudModule Rootkit via Chrome Zero-Day ExploitNext: Cicada3301 ransomware’s Linux encryptor targets VMware ESXi systems Related Stories Researchers Identify PassiveNeuron APT Using Neursite and NeuralExecutor Malware Security Aid October 22, 2025 Scattered Lapsus$ Hunters Signal Shift in Tactics Security Aid October 22, 2025 Hackers Earn Over $520,000 on First Day of Pwn2Own Ireland 2025 Security Aid October 22, 2025