Supply Chain Attack Technique Spoofs GitHub Commit Metadata
Security researchers at Checkmarx are warning of a new supply chain attack technique that relies on spoofed commit metadata to add legitimacy to malicious GitHub repositories.
Read more: Supply Chain Attack Technique Spoofs GitHub Commit Metadata
Story added 15. July 2022, content source with full text you can find at link above.