Had this user try to do a PR on my webbian
project in hopes of an auto-accept. They literally have a repo called virus
. Reported, of course, but found it funny.
You are viewing a single thread.
View all comments 4 points
I suspect that’s not the actual payload , the anggur-
repo appears to be more suspicious , might try to analyse that
2 points
here is the extracted payload : https://gist.github.com/MinekPo1/af9bfd787c35ea5ff8b22165e9a05a6d
2 points
also : https://github.com/Kingcy78/NEW/blob/main/1#L551-L570
high quality malware !
0 points