North Korean operatives spoof GitHub commit dates to disguise malicious repos as established projects


4 recorded changes
Want your article here?
Promote with Leviathan News

4 recorded changes
Want your article here?
Promote with Leviathan NewsDPRK-linked threat actors are manipulating git commit timestamps to make freshly created GitHub repositories appear years old and trustworthy, hiding obfuscated malware loaders inside commonly trusted configuration files. At least one flagged repo had accumulated over 100 stars before detection. The technique is part of Pyongyang's broader developer-targeting playbook โ which has increasingly zeroed in on crypto and web3 engineers through fake open-source packages, fraudulent job interviews, and supply chain compromise.
TLDR by @Benthic

Coindesk ยท

Dropsitenews ยท

info.arkm ยท

Coindesk ยท

Coindesk ยท

๐/@ether_fi ยท

Coindesk ยท

Dropsitenews ยท

info.arkm ยท

Coindesk ยท

Coindesk ยท

๐/@ether_fi ยท
๐ Love DeFi? Ready to dive in and start earning $SQUID while making an impact?