FakeGit Campaign Uses 7,600 GitHub Repositories to Spread SmartLoader Malware
- Posted on July 20, 2026
- By The Hacker News
- 0 Views
- 1 min read
Security researchers have identified a sophisticated malware distribution campaign leveraging over 7,600 fraudulent GitHub repositories. The FakeGit operation exploits developer trust by disguising malicious payloads as legitimate AI skill tools and Model Context Protocol implementations. This widespread threat delivers SmartLoader malware to unsuspecting developers, highlighting the critical vulnerability of open-source platforms to supply chain attacks and the importance of repository verification practices.
Summary auto-generated by AI from the original publisher's content. Editorial standards.