{
"$type": "site.standard.document",
"bskyPostRef": {
"cid": "bafyreie2xcjhttvxw72dkbfgkogek57j3admxwoqetdd3q7h2gxe64ytra",
"uri": "at://did:plc:avkh7zze5iapdkk6naaunrjn/app.bsky.feed.post/3mmomwlrnd2x2"
},
"path": "/260525/p8#a260525p8",
"publishedAt": "2026-05-25T10:05:02.000Z",
"site": "https://www.techmeme.com",
"tags": [
"SecurityWeek",
"More than 5,500 GitHub repositories were infected with malware in a supply chain attack, dubbed Megalodon, on May 18 that relies on automated commits"
],
"textContent": "Ionut Arghire / SecurityWeek:\n**More than 5,500 GitHub repositories were infected with malware in a supply chain attack, dubbed Megalodon, on May 18 that relies on automated commits** — Fake automated commits injected GitHub Actions workflows containing payloads to steal credentials, CI secrets, keys, and tokens.",
"title": "More than 5,500 GitHub repositories were infected with malware in a supply chain attack, dubbed Megalodon, on May 18 that relies on automated commits (Ionut Arghire/SecurityWeek)"
}