Supply Chain Attackers Escalate With GitHub Dependabot Impersonation

Armed with stolen developer passcodes, attackers have checked in changes to repositories under the automation feature’s name in an attempt to escape notice.

This article has been indexed from Dark Reading

Read the original article: