• caglararli@hotmail.com
  • 05386281520

GitHub Repojacking Bug Could’ve Allowed Attackers to Takeover Other Users’ Repositories

Çağlar Arlı      -    88 Views

GitHub Repojacking Bug Could’ve Allowed Attackers to Takeover Other Users’ Repositories

Cloud-based repository hosting service GitHub has addressed a high-severity security flaw that could have been exploited to create malicious repositories and mount supply chain attacks. The RepoJacking technique, disclosed by Checkmarx, entails a bypass of a protection mechanism called popular repository namespace retirement, which aims to prevent developers from pulling unsafe repositories with