Kryptovaluta-ticker:
sysadmin fra Cyber Security News

Hackers Abuse GitHub Actions to Exploit cPanel and WHM Servers and Steal Cloud Credentials

Tushar Subhra Dutta
7 hours ago
8 Visninger
0 Kommentarer
Hackers Abuse GitHub Actions to Exploit cPanel and WHM Servers and Steal Cloud Credentials

A large-scale cyber campaign is abusing GitHub Actions to turn trusted open source projects into weapons against web hosting servers. Attackers plant malicious workflow files inside compromised repositories and use free GitHub compute power to scan the public internet for weak targets. The operation focuses on cPanel and WHM servers, which manage websites, email accounts, and databases for countless businesses. Once inside those systems, the malware hunts for cloud keys, payment credentials, and source control tokens that can open more doors. Analysts from Socket.dev identified the campaign while reviewing suspicious Packagist development versions tied to a legitimate PHP developer. Socket.dev said in a report shared with...

Læs hele artiklen hos kilden.

Deltag i diskussionen — kommenter, stem og del links.

Registrer
Var dette nyttigt?
Del:

Kommentarer (0)

Log venligst ind eller opret dig for at deltage i diskussionen

Ingen kommentarer ennå. Bli den første til å kommentere!