Security researchers say 5,500 GitHub repositories have been affected by the attack.

The Megalodon supply chain attack poisoned over 5,500 GitHub repositories via automated commits injecting GitHub Actions workflows.

Megalodon compromette oltre 5.500 repository GitHub rubando token cloud e segreti CI/CD tramite workflow malevoli.