Submitted via IRC for SoyCow0152
Hundreds of developers have had had Git source code repositories wiped and replaced with a ransom demand.
The attacks started earlier today, appear to be coordinated across Git hosting services (GitHub, Bitbucket, GitLab), and it is still unclear how they are happening.
What it is known is that the hacker removes all source code and recent commits from vitcims' Git repositories, and leaves a ransom note behind that asks for a payment of 0.1 Bitcoin (~$570).
The hacker claims all source code has been downloaded and stored on one of their servers, and gives the victim ten days to pay the ransom; otherwise, they'll make the code public.
Source: https://www.zdnet.com/article/a-hacker-is-wiping-git-repositories-and-asking-for-a-ransom/
(Score: 3, Insightful) by darkfeline on Tuesday May 07 2019, @03:34AM (1 child)
So they actually notice the ransom note.
I wouldn't be surprised if this started out with the attacker dropping a file in the repository, then noticing he got back zero responses within the deadline.
The kind of company that would get hit by this attack probably wouldn't notice a benign "Add ransom note" commit; just git pull; git push, business as usual.
Now, deleting the entire repo, it's be kinda hard not to notice that.
Join the SDF Public Access UNIX System today!
(Score: 1, Troll) by realDonaldTrump on Tuesday May 07 2019, @05:55AM
This one is massive Clickbate. Article says they "remove." WRONG. Because, Aricle also says they DO NOT DELETE. At BOTTOM of Article. It even has Link -- how to Recovery!!!!