Discussion

Dormant GitHub Accounts Help Attackers Blend In While Mapping Corporate Orgs

Started by The Hacker News · 09 Jul 2026 21:48 · 29 Views · 0 Replies
Thread Starter #0
Datadog Security Labs is warning of "several overlapping campaigns" that are systematically enumerating corporate GitHub organizations, repositories, and user accounts through the GitHub API.

"Operators rely on automated scraping tooling with custom or legitimate-sounding user agents, leveraging GitHub 'ghost' accounts that are often years old, or compromised OAuth tokens and personal

Okumaya devam et...

You must be logged in to reply.

0 quotes selected