logo

HIGH ALERT: Ongoing targeting of online code repositories

ID: 96e87d4d-a80c-5b03-b248-9a42db3dac82

STIX ID: report--96e87d4d-a80c-5b03-b248-9a42db3dac82

Feed Name: ASD's ACSC - Alerts RSS

Threat Score
70/100

Date Published: 2025-09-19

Date Updated: 2026-07-24

Author: Australian Cyber Security Centre (ACSC)

...
...

The Australian Signals Directorate (ASD) / ACSC warns of increased targeting of online code repositories, where threat actors use phishing, social engineering, compromised credentials or tokens, and infected packages to gain access. Observed post-compromise activities include modifying public packages to enable supply-chain compromises, scanning repositories for secrets and keys, exfiltrating and publishing credentials, and migrating private repositories to public; the advisory recommends investigating affected systems, validating packages, monitoring for secret scanning, rotating exposed secrets, adopting SBOM practices, and contacting ACSC for assistance.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.