GitHub comments abused to push password stealing malware masked as fixes GitHub comments abused to push password stealing malware masked as fixes GitHub is being abused to distribute the Lumma Stealer information-stealing malware as fake fixes posted in project comments. [...] Read More September 1, 2024 1 minute read GitHub is being abused to distribute the Lumma Stealer information-stealing malware as fake fixes posted in project comments. […] Read More About The Author Read moreBuilding cyber skills and roles from CyBOK foundations See author's posts Related Post navigation Previous: North Korean Hackers Deploy FudModule Rootkit via Chrome Zero-Day ExploitNext: Cicada3301 ransomware’s Linux encryptor targets VMware ESXi systems Related Stories Microsoft Fixes 200 CVEs in June Patch Tuesday Security Aid June 10, 2026 75% of Firms Deploy Vulnerable Code Amid Pressure on CISOs, Report Finds Security Aid June 9, 2026 AI Coding Adoption Hits 97% but Governance Lags Behind Security Aid June 9, 2026