Nearly 7,600 malicious GitHub repositories lure developers and AI systems with fake AI integration tools and MCP servers to install SmartLoader malware.
The FakeGit campaign distributes malware across 7,600 GitHub repositories with 14 million downloads, demonstrating the exploitation of trusted developer platforms as attack vectors.
The FakeGit campaign exploits counterfeit GitHub repositories with copied projects and deceptively authentic developer profiles to distribute SmartLoader malware through fake AI tools and MCP servers.