Megalodon Malware Compromised 5,500+ GitHub Repos Within 6 Hours
Source: Cybersecuritynews
Published:
<p>A sweeping automated supply chain attack codenamed “Megalodon” struck GitHub on May 18, 2026, injecting malicious CI/CD backdoors into over 5,500 repositories in less than six hours, marking one of the most aggressive GitHub Actions poisoning campaigns ever recorded. SafeDep discovered that betwe