Malicious Go Libraries Mimic as Google UUID to Exfiltrate User Data
How the Attack Works. The threat actor behind the bpoorman GitHub alias introduced a backdoor through a hidden function named Valid.
The full story
This article is one source in a clustered incident — the cluster page carries the summary, timeline and every other outlet covering it.
