Threaticon
Toggle sidebar

You're viewing a limited, public preview. Log in for full access.

Log in User Guide
Log in Get started
News Dormant GitHub Accounts Help Attackers Blend In While Mapping Corporate Orgs
The Hacker News
1 month ago

Dormant GitHub Accounts Help Attackers Blend In While Mapping Corporate Orgs

By info@thehackernews.com (The Hacker News)

Datadog Security Labs is warning of "several overlapping campaigns" that are systematically enumerating corporate GitHub organizations, repositories, and user accounts through the GitHub API. "Operators rely on automated scraping tooling with custom or legitimate-sounding user agents, leveraging GitHub 'ghost' accounts that are often years old, or compromised OAuth tokens and personal

More from The Hacker News

Leaving Threaticon

This link opens an external site that isn't part of the platform.