Hackers Hack Hackers: MUT-1244 Steals Credentials in Deceptive GitHub Attack
ID: b087e912-208c-5148-a11e-b36572bcefe4
STIX ID: report--b087e912-208c-5148-a11e-b36572bcefe4
Feed Name: securityonline.info
Threat Score
Datadog Security Labs attributes a year-long campaign to the criminal group MUT-1244 that targeted security researchers, penetration testers and other attackers by publishing convincing fake GitHub PoCs and sending phishing lures; the campaign delivered malware (miner/backdoor) that exfiltrated ~390,000 WordPress credentials, private SSH keys, AWS credentials and other sensitive data to external services, and remains active with hundreds of systems likely infected.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
