DEV Community

Cover image for 300 Poisoned GitHub Repos Expose Glassworm Botnet Threat
MLXIO
MLXIO

Posted on • Originally published at mlxio.com

300 Poisoned GitHub Repos Expose Glassworm Botnet Threat

Glassworm poisoned 300+ GitHub repos before CrowdStrike and Google cut its command channels, but developer supply chains may still be exposed.

Key takeaways

  • If CrowdStrike and Google cut off Glassworm’s command channels, how much poisoned open source code is already sitting inside developer workflows?
  • CrowdStrike, working with Google and Shadowserver, disrupted the Glassworm botnet, a malware operation used to steal passwords and push malicious code at o...
  • > “Adversaries are no longer just targeting products, they’re targeting the developers who build them,” CrowdStrike wrote. “Developers represent uniquely high-value ta...
  • How did Glassworm turn developer trust into attack infrastructure?

👉 Read the full breakdown on MLXIO

Canonical source: https://mlxio.com/cybersecurity/glassworm-botnet-github-takedown

Top comments (0)