<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Megalodon: 5.561 repository GitHub compromessi in sei ore con workflow CI&#x2F;CD malevoli]]></title><description><![CDATA[<h1><b><a href="https://insicurezzadigitale.com/megalodon-5-561-repository-github-compromessi-in-sei-ore-con-workflow-ci-cd-malevoli/" rel="noopener noreferrer">Megalodon: 5.561 repository GitHub compromessi in sei ore con workflow CI/CD malevoli</a></b></h1><p><br /><span><a href="/user/..%2Fcategory%2Finformatica%40feddit.it">@<span>informatica</span></a></span><br />In sei ore il 18 maggio 2026, la campagna automatizzata Megalodon ha iniettato 5.718 commit malevoli in 5.561 repository GitHub, esfiltrandone credenziali cloud, chiavi SSH e segreti CI/CD verso un C2 esterno. L'operazione, collegata al gruppo<br />RE: <a href="https://insicurezzadigitale.com/?p=9706" rel="noopener noreferrer">insicurezzadigitale.com/?p=970…</a></p>]]></description><link>https://forum.androidiani.net/topic/bc5ea8bc-29a0-41c6-a379-8982dc565593/megalodon-5.561-repository-github-compromessi-in-sei-ore-con-workflow-ci-cd-malevoli</link><generator>RSS for Node</generator><lastBuildDate>Thu, 25 Jun 2026 04:40:41 GMT</lastBuildDate><atom:link href="https://forum.androidiani.net/topic/bc5ea8bc-29a0-41c6-a379-8982dc565593.rss" rel="self" type="application/rss+xml"/><pubDate>Sun, 24 May 2026 18:38:15 GMT</pubDate><ttl>60</ttl></channel></rss>