<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic New Gitloker attacks wipe GitHub repos in extortion scheme in Threats</title>
    <link>https://community.isc2.org/t5/Threats/New-Gitloker-attacks-wipe-GitHub-repos-in-extortion-scheme/m-p/71291#M1222</link>
    <description>&lt;P&gt;Hi All&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Attackers are targeting GitHub repositories, wiping their contents, and asking the victims to reach out on Telegram for more information.&lt;/P&gt;&lt;P&gt;These attacks are part of what looks like an ongoing campaign &lt;A href="https://x.com/1ZRR4H/status/1798412587484496068" target="_blank" rel="nofollow noopener"&gt;first spotted&lt;/A&gt; on Wednesday by Germán Fernández, a security researcher at Chilean cybersecurity company CronUp.&lt;/P&gt;&lt;P&gt;The threat actor behind this campaign—who has the &lt;A href="https://t.me/gitlokers" target="_blank" rel="nofollow noopener"&gt;Gitloker&lt;/A&gt; handle on Telegram and is posing as a cyber incident analyst—is likely compromising targets' GitHub accounts using stolen credentials.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.bleepingcomputer.com/news/security/new-gitloker-attacks-wipe-github-repos-in-extortion-scheme/" target="_blank"&gt;https://www.bleepingcomputer.com/news/security/new-gitloker-attacks-wipe-github-repos-in-extortion-scheme/&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Caute_Cautim&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 18 Jun 2024 22:22:21 GMT</pubDate>
    <dc:creator>Caute_cautim</dc:creator>
    <dc:date>2024-06-18T22:22:21Z</dc:date>
    <item>
      <title>New Gitloker attacks wipe GitHub repos in extortion scheme</title>
      <link>https://community.isc2.org/t5/Threats/New-Gitloker-attacks-wipe-GitHub-repos-in-extortion-scheme/m-p/71291#M1222</link>
      <description>&lt;P&gt;Hi All&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Attackers are targeting GitHub repositories, wiping their contents, and asking the victims to reach out on Telegram for more information.&lt;/P&gt;&lt;P&gt;These attacks are part of what looks like an ongoing campaign &lt;A href="https://x.com/1ZRR4H/status/1798412587484496068" target="_blank" rel="nofollow noopener"&gt;first spotted&lt;/A&gt; on Wednesday by Germán Fernández, a security researcher at Chilean cybersecurity company CronUp.&lt;/P&gt;&lt;P&gt;The threat actor behind this campaign—who has the &lt;A href="https://t.me/gitlokers" target="_blank" rel="nofollow noopener"&gt;Gitloker&lt;/A&gt; handle on Telegram and is posing as a cyber incident analyst—is likely compromising targets' GitHub accounts using stolen credentials.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.bleepingcomputer.com/news/security/new-gitloker-attacks-wipe-github-repos-in-extortion-scheme/" target="_blank"&gt;https://www.bleepingcomputer.com/news/security/new-gitloker-attacks-wipe-github-repos-in-extortion-scheme/&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Caute_Cautim&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 18 Jun 2024 22:22:21 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Threats/New-Gitloker-attacks-wipe-GitHub-repos-in-extortion-scheme/m-p/71291#M1222</guid>
      <dc:creator>Caute_cautim</dc:creator>
      <dc:date>2024-06-18T22:22:21Z</dc:date>
    </item>
  </channel>
</rss>

