Adding to this, my GitHub account was compromised in the same campaign. Here's the mechanic so others can check themselves:
The attacker injects an obfuscated loader into build configs (postcss/next/tailwind.config, sometimes .ts entry files) a base64 AUTH_API_KEY that decodes to the C2, then eval()s whatever the server returns. Runs on npm build/start.
auth-confirm-four.vercel.app…
another one.. this malware is spreading like wildfire through compromised github accounts.
@rauchg please take this down as well.
@github needs to see how these accounts are being compromised and how the attackers are circumventing platform protections
auth-confirm-four.vercel.app…
another one.. this malware is spreading like wildfire through compromised github accounts.
@rauchg please take this down as well.
@github needs to see how these accounts are being compromised and how the attackers are circumventing platform protections
Important announcement:
CJP Founder @abhijeet_dipke will return to India on June 6 for a peaceful protest at Jantar Mantar, Delhi, demanding the resignation of the Education Minister.
. @DrinkPrime@Support_DP You guys have such bad customer support. I've been trying to get my purifier uninstalled for a week. And no technician has been assigned or I've gotten a call. Fix this ASAP.
We were able to get full create, read, update and delete (CRUD) access & shell access to CBSE's prod servers (as mentioned in their circular archive.is/dGw1Q). This is disastrous. Proof archive is at archive.is/bPH2U.
Prod URL (might be taken down): cbseosm.onmark.co.in/cbse_da…
Maybe this is not abundantly obvious.
Generating an AI image shows you lack the respect for criticism or, more likely, are so incompetent that you’re unwilling to even put in a modicum of effort to address the issue and instead delegate the task, poorly might I add, to a machine
Just secured my unique dope tag on @dopepayme the app that lets you spend stablecoins like cash.
Scan. Tap. Done.
Join the waitlist before your tag is gone
waitlist.dopepay.me?ref=LjV6…