GitHub comments abused to push password stealing malware masked as fixes GitHub comments abused to push password stealing malware masked as fixes GitHub is being abused to distribute the Lumma Stealer information-stealing malware as fake fixes posted in project comments. [...] Read More September 1, 2024 1 minute read GitHub is being abused to distribute the Lumma Stealer information-stealing malware as fake fixes posted in project comments. […] Read More About The Author Read moreBuilding cyber skills and roles from CyBOK foundations See author's posts Related Post navigation Previous: North Korean Hackers Deploy FudModule Rootkit via Chrome Zero-Day ExploitNext: Cicada3301 ransomware’s Linux encryptor targets VMware ESXi systems Related Stories Device code phishing attacks surge 37x as new kits spread online Security Aid April 4, 2026 European Commission Confirms Data Breach Linked to Trivy Supply Chain Attack Security Aid April 4, 2026 LinkedIn secretely scans for 6,000+ Chrome extensions, collects data Security Aid April 3, 2026