Skip to content
Discussion options

You must be logged in to vote

Hello everyone following this discussion. Before the victims started unstarring the repositories, I conducted an analysis and statistical breakdown of the attack data relevant to my own project. The code has been open-sourced in pilgrimlyieu/Sha1-Hulud-2-GitHub-Stars-Analysis.

According to my research, 86.22% of the projects listed on the Awesome Tauri list were "attacked," and 94.78% of the projects on the Awesome FastAPI list were "attacked". Furthermore, the vast majority of the affected projects were inflated with at least 100 stars.

More detailed data and the full investigative report can be found in the aforementioned repository. All victims' GitHub usernames have been encrypted to …

Replies: 4 comments 1 reply

Comment options

You must be logged in to vote
0 replies
Comment options

You must be logged in to vote
0 replies
Comment options

You must be logged in to vote
0 replies
Comment options

You must be logged in to vote
1 reply
@Brendonovich
Comment options

Answer selected by pilgrimlyieu
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
General General topics and discussions that don't fit into other categories, but are related to GitHub Show & Tell Discussions where community members share their projects, experiments, or accomplishments
4 participants