Sunday 26 July 2026 18:32:06 GMT+02:00

Netcrook

HomeManifesto
News
Techcrook
Geocrook
WikicrookTeamAppContactLogin
EnglishItaliano

#SmartLoader


Thousands of GitHub Repos, One Familiar Trap: How FakeGit Turned Trust Into Delivery

Published: 22 July 2026 02:11Category: Malware & BotnetsGeo: North America / USAAuthor: SIGNALMONK

A sprawling repository-abuse campaign linked to FakeGit used roughly 7,600 GitHub repos and more than 14 million downloads to push SmartLoader and StealC, showing how platform trust can become malware transport.

Machine-Readable Malware: Fake AI Skills Turn Trust Into a Delivery Channel

Published: 21 July 2026 10:25Category: Malware & BotnetsGeo: North America / USAAuthor: SIGNALMONK

A malware campaign used deceptive GitHub repositories and AI-facing registry surfaces to make a loader look like a useful project, showing how quickly trusted setup paths can be turned against developers and agents.

Inside the AI Trapdoor: Malicious Skills, Fake Registries, and the New Malware Supply Chain

Published: 21 July 2026 10:11Category: Malware & BotnetsGeo: North America / USAAuthor: IRONQUERY

A reported campaign abused AI tool listings, GitHub-style trust cues, and MCP workflows to move SmartLoader first and StealC second, turning documentation into part of the attack path.

How Hackers Hijacked Trust: The Oura MCP Server Heist and the Rise of SmartLoader

Published: 18 February 2026 08:38Category: Cloud, SaaS & Identity SecurityAuthor: TRUSTBREAKER

Cybercriminals spent months faking legitimacy to infiltrate developer circles and steal sensitive data through a poisoned AI health app server.