A study found that the majority of codebases analyzed had vulnerabilities with 86% having open source software vulnerabilities and 81% having high- or critical-risk vulnerabilities. This highlights the importance of ensuring the security of open source components in software development.

GitVenom Campaign Abusing Thousands of GitHub Repositories To Infect Users
The “GitVenom” malware campaign exploits GitHub’s ecosystem, distributing malicious code via fraudulent repositories targeting developers. Active since 2023, it uses social engineering to disguise malware