Source |
TrendLabs Security |
Identifiant |
8301503 |
Date de publication |
2023-01-16 00:00:00 (vue: 2023-01-16 14:07:41) |
Titre |
Abusing a GitHub Codespaces Feature For Malware Delivery |
Texte |
Proof of Concept (POC): We investigate one of the GitHub Codespaces' real-time code development and collaboration features that attackers can abuse for cloud-based trusted malware delivery. Once exploited, malicious actors can abuse legitimate GitHub accounts to create a malware file server. |
Notes |
★★★
|
Envoyé |
Oui |
Condensat |
abuse abusing accounts actors attackers based can cloud code codespaces collaboration concept create delivery development exploited feature features file github investigate legitimate malicious malware once one poc proof real server time trusted |
Tags |
Malware
|
Stories |
|
Move |
|