logo

Clone2Leak attacks exploit Git flaws to steal credentials

ID: d531488e-2c24-5d7a-b873-7b32bf84a2f7

STIX ID: report--d531488e-2c24-5d7a-b873-7b32bf84a2f7

Feed Name: Bleeping Computer

Threat Score
65/100

Date Published: 2025-01-27

Date Updated: 2026-04-20

Author: Bill Toulas

...
...

A set of three related vulnerabilities dubbed "Clone2Leak" allow attackers to craft malicious repositories or configuration files that cause Git credential helpers to send stored credentials (passwords and access tokens) to attacker-controlled servers. Affected software includes GitHub Desktop, Git Credential Manager, Git LFS, and the GitHub CLI/Codespaces credential helpers; fixes are available and users should update to the patched versions and enable mitigations like credential.protectProtocol.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.