GitHub comments abused to push password stealing malware masked as fixes GitHub comments abused to push password stealing malware masked as fixes GitHub is being abused to distribute the Lumma Stealer information-stealing malware as fake fixes posted in project comments. [...] Read More September 1, 2024 1 minute read GitHub is being abused to distribute the Lumma Stealer information-stealing malware as fake fixes posted in project comments. […] Read More About The Author Read moreBuilding cyber skills and roles from CyBOK foundations See author's posts Related Post navigation Previous: North Korean Hackers Deploy FudModule Rootkit via Chrome Zero-Day ExploitNext: Cicada3301 ransomware’s Linux encryptor targets VMware ESXi systems Related Stories Small Defense Firms Lack Network Data to Stop Nation-State Hackers, Analyst Says Security Aid May 4, 2026 OpenAI To Extend Cyber Program to Government Agencies Security Aid May 4, 2026 Anthropic Rolls Out Claude Security for AI Vulnerability Scanning Security Aid May 1, 2026