Cybersecurity experts have raised alarms over a new phishing tool named 'GoIssue' that specifically targets GitHub developers. The tool enables cybercriminals to send bulk phishing emails aimed at stealing credentials and compromising software repositories. This development highlights a growing trend of backdoor attacks within open-source contributions, with experts warning that software supply chain attacks are set to become a significant threat in the technology sector in the coming years. The affordability of the GoIssue tool has reportedly made these attacks more scalable, increasing the risk for developers and corporate supply chains alike.
Phishing Tool GoIssue Targets Developers on GitHub https://t.co/EFv9n2ivwH
GitLoker Strikes Again: New “Goissue” Tool Targets GitHub Developers and Corporate Supply Chains https://t.co/3pkRRzOfKc
Open source contributions are increasingly seeing backdoor attacks. How many of these are caught? Software supply chain attacks are going to be the defining threat in tech over the next years https://t.co/fDpxGNaFTB