Tuttiquotidiani is completely free. Every day we aggregate news from 100+ sources and generate original AI summaries for you. Help us keep the service running with a small donation, or become TQ Pro for just €1/month.

FakeGit Campaign Uses 7,600 GitHub Repositories to Spread SmartLoader Malware

  • Posted on July 20, 2026
  • By The Hacker News
  • 0 Views
  • 1 min read
In brief

Security researchers have identified a sophisticated malware distribution campaign leveraging over 7,600 fraudulent GitHub repositories. The FakeGit operation exploits developer trust by disguising malicious payloads as legitimate AI skill tools and Model Context Protocol implementations. This widespread threat delivers SmartLoader malware to unsuspecting developers, highlighting the critical vulnerability of open-source platforms to supply chain attacks and the importance of repository verification practices.

Summary auto-generated by AI from the original publisher's content. Editorial standards.

FakeGit Campaign Uses 7,600 GitHub Repositories to Spread SmartLoader Malware
FakeGit Campaign Uses 7,600 GitHub Repositories to Spread SmartLoader Malware

Researchers uncover 7,600 FakeGit GitHub repos, including 800 AI skills and MCP lures spreading SmartLoader malware.
continue reading...

Author
The Hacker News

You May Also Like