Threat Actors Exploit GitHub Accounts to Host Payloads, Tools, and Amadey Malware Plugins
Cisco Talos researchers identified a sophisticated Malware-as-a-Service (MaaS) operation in April 2025 that employed the Amadey botnet to distribute various payloads. This operation exploited fake GitHub accounts as open directories for hosting malicious payloads, tools, and Amadey plugins, aiming to evade web filtering mechanisms and simplify distribution. By leveraging GitHub’s legitimate domain, threat actors could […]
Introduction to Malware Binary Triage (IMBT) Course
Looking to level up your skills? Get 10% off using coupon code: MWNEWS10 for any flavor.
Enroll Now and Save 10%: Coupon Code MWNEWS10
Note: Affiliate link – your enrollment helps support this platform at no extra cost to you.
The post Threat Actors Exploit GitHub Accounts to Host Payloads, Tools, and Amadey Malware Plugins appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Article Link: https://gbhackers.com/threat-actors-exploit-github-accounts/
1 post - 1 participant
Malware Analysis, News and Indicators - Latest topics