logo

Hackers Hack Hackers: MUT-1244 Steals Credentials in Deceptive GitHub Attack

ID: b087e912-208c-5148-a11e-b36572bcefe4

STIX ID: report--b087e912-208c-5148-a11e-b36572bcefe4

Feed Name: securityonline.info

Threat Score
78/100

Date Published: 2024-12-16

Date Updated: 2026-04-22

Author: do son

...
...

Datadog Security Labs attributes a year-long campaign to the criminal group MUT-1244 that targeted security researchers, penetration testers and other attackers by publishing convincing fake GitHub PoCs and sending phishing lures; the campaign delivered malware (miner/backdoor) that exfiltrated ~390,000 WordPress credentials, private SSH keys, AWS credentials and other sensitive data to external services, and remains active with hundreds of systems likely infected.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.