{"id":607,"date":"2024-06-28T03:00:51","date_gmt":"2024-06-28T03:00:51","guid":{"rendered":"https:\/\/www.cloudcoffer.com\/?p=607"},"modified":"2024-07-26T03:54:28","modified_gmt":"2024-07-26T03:54:28","slug":"hackers-infiltrate-systems-using-github","status":"publish","type":"post","link":"https:\/\/www.cloudcoffer.com\/?p=607","title":{"rendered":"Hackers infiltrate systems using GitHub"},"content":{"rendered":"\n<p>CloudCoffer researchers have discovered that an increasing amount of malware is being placed on services like GitHub, Dropbox, Google Drive, OneDrive, and Discord. These malicious programs evade the detection tools of these platforms through encryption and obfuscation. Hackers then exploit system vulnerabilities or use social engineering to implant these programs on victim systems. Many of these malicious programs have a 0% detection rate on VirusTotal. Some malware disguises itself as legitimate software, making detection and response more challenging (for example, Light Shield Lab discovered malware disguised as remote desktop software, which has been downloaded tens of thousands of times).<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><a href=\"https:\/\/www.cloudcoffer.com\/wp-content\/uploads\/2024\/07\/github-malware.png\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"466\" src=\"https:\/\/www.cloudcoffer.com\/wp-content\/uploads\/2024\/07\/github-malware-1024x466.png\" alt=\"\" class=\"wp-image-608\" srcset=\"https:\/\/www.cloudcoffer.com\/wp-content\/uploads\/2024\/07\/github-malware-1024x466.png 1024w, https:\/\/www.cloudcoffer.com\/wp-content\/uploads\/2024\/07\/github-malware-300x137.png 300w, https:\/\/www.cloudcoffer.com\/wp-content\/uploads\/2024\/07\/github-malware-768x350.png 768w, https:\/\/www.cloudcoffer.com\/wp-content\/uploads\/2024\/07\/github-malware.png 1439w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/a><\/figure>\n\n\n\n<p><\/p>\n\n\n\n<p><\/p>\n\n\n\n<p>Additionally, numerous PyPI packages, such as\u00a0<code>httprequesthub<\/code>,\u00a0<code>pyhttpproxifier<\/code>,\u00a0<code>libsock<\/code>,\u00a0<code>libproxy<\/code>, and\u00a0<code>libsocks5<\/code>, masquerade as libraries for handling network proxies and transmit sensitive data from computers to hackers. Here is one of the links:\u00a0<a href=\"https:\/\/security.snyk.io\/vuln\/SNYK-PYTHON-HTTPREQUESTHUB-6139265\">https:\/\/security.snyk.io\/vuln\/SNYK-PYTHON-HTTPREQUESTHUB-6139265<\/a>.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>CloudCoffer researchers have discovered that an increasing amount of malware is being placed on services like GitHub, Dropbox, Google Drive, OneDrive, and Discord. These malicious programs evade the detection tools of these platforms through encryption and obfuscation. Hackers then exploit system vulnerabilities or use social engineering to implant these programs on victim systems. Many of <a href=\"https:\/\/www.cloudcoffer.com\/?p=607\" rel=\"nofollow\"><span class=\"sr-only\">Read more about Hackers infiltrate systems using GitHub<\/span>[&hellip;]<\/a><\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[5],"tags":[16],"class_list":["post-607","post","type-post","status-publish","format-standard","hentry","category-honeypot","tag-github-malware"],"_links":{"self":[{"href":"https:\/\/www.cloudcoffer.com\/index.php?rest_route=\/wp\/v2\/posts\/607","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.cloudcoffer.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.cloudcoffer.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.cloudcoffer.com\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.cloudcoffer.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=607"}],"version-history":[{"count":2,"href":"https:\/\/www.cloudcoffer.com\/index.php?rest_route=\/wp\/v2\/posts\/607\/revisions"}],"predecessor-version":[{"id":611,"href":"https:\/\/www.cloudcoffer.com\/index.php?rest_route=\/wp\/v2\/posts\/607\/revisions\/611"}],"wp:attachment":[{"href":"https:\/\/www.cloudcoffer.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=607"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.cloudcoffer.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=607"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.cloudcoffer.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=607"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}