#6
BleepingComputer
general
July 21, 2026 at 22:34 UTC
FakeGit campaign uses 7,600 GitHub repos to push SmartLoader malware
By Bill Toulas
AI Summary
The 'FakeGit' campaign has weaponized 7,600 malicious GitHub repositories to distribute SmartLoader and StealC malware, accumulating over 14 million downloads. The scale of this supply chain-style attack on the developer ecosystem makes it a critical threat for security teams monitoring open-source dependency risk and developer endpoint compromise.
Relevance score: 85.0/100
Sponsored
Protect Your Business
Expert cybersecurity solutions to safeguard your organization from evolving threats.
Get Protected →