CyberSecurity News
Attackers Weaponize GitHub Actions Runners to Target cPanel and WHM Servers
AI summary
Cybersecurity researchers have discovered a large-scale campaign that utilizes compromised GitHub repositories as a means to target cPanel and WebHost Manager servers. The campaign involves malicious development versions of Packagist packages, specifically 10 packages linked to a legitimate PHP and DevOps developer. These packages were compromised between July 12 and 13. The attackers are leveraging GitHub Actions runners to carry out the attacks. The targeted servers are cPanel and WebHost Manager instances. The malicious activity is associated with a developer named dinushchathurya.
This is an AI-generated brief aggregated by HackerFeeds for convenience and grounded in the source’s own summary; the related CVE, threat-group and country data is from HackerFeeds’ own indexes. The original article is the authoritative source — all rights belong to The Hacker News.

