In just six hours, the campaign quietly pushed malware to more than 5,500 GitHub repositories, stealing credentials, developer secrets, and more.

The Megalodon supply chain attack poisoned over 5,500 GitHub repositories via automated commits injecting GitHub Actions workflows.

Megalodon compromette oltre 5.500 repository GitHub rubando token cloud e segreti CI/CD tramite workflow malevoli.

Security researchers say 5,500 GitHub repositories have been affected by the attack.

In just six hours, the campaign quietly pushed malware to more than 5,500 GitHub repositories, stealing credentials, developer secrets, and more.