obfuscation

2 articles
sort: new top best
clear filter
0 7/10

StepSecurity discovered ForceMemo, an ongoing campaign compromising hundreds of GitHub accounts via the GlassWorm malware (distributed through malicious VS Code/Cursor extensions) to inject obfuscated, Solana blockchain-based C2 malware into Python repositories. Attackers use stolen GitHub credentials to force-push malicious code while preserving original commit metadata, affecting popular projects like Django and ML research repositories.

StepSecurity ForceMemo GlassWorm GitHub Python PyPI Django Streamlit Solana Cursor VS Code amirasaran/django-restful-admin BierOne wecode-bootcamp-korea HydroRoll-Team
stepsecurity.io · varunsharma07 · 18 hours ago · details · hn
0 2/10

A creative exploration of using CSS text-transform, font manipulation via fontTools, and spelling/stylometric changes to obscure authorship and evade pattern-based detection—demonstrating how writing style can be obfuscated while preserving code blocks.

Will Keleher Peter Norvig fontTools FontForge Roboto
will-keleher.com · todsacerdoti · 8 days ago · details · hn