Hardware·Americas

Aikido Security Discovers 151 Compromised GitHub Repos

Global AI Watch · Editorial Team··3 min read·Tom's Hardware
Aikido Security Discovers 151 Compromised GitHub Repos

Aikido Security reported the compromise of at least 151 GitHub repositories by a threat actor known as Glassworm. This campaign utilized a sophisticated technique that embeds malicious payloads within invisible Unicode characters, which are not detectable in code review. The affected repositories, compromised between March 3 and March 9, have since extended to npm and the VS Code marketplace. Aikido notes that the number of affected repositories likely exceeds the identified cases, as some had been deleted prior to the discovery.

Free Daily Briefing

Top AI intelligence stories delivered each morning.

Subscribe Free →
SourceTom's HardwareRead original

Related Articles

Explore Trackers