Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

It hides the malware's trail, and disguises which keys were leaked, making rotation harder


The socket.dev deconstruction of the worm (https://socket.dev/blog/shai-hulud-strikes-again-v2) suggests that the destructive actions on GitHub were not part of the malware itself.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: