Checkmarx: Attackers Hijacking GitHub Ratings To ‘Infect As Many Targets As Possible’

“Beware, “Starjacking” is real and can lead software developers down a dangerous and slippery slope!”

Glenn Baruck, The eDot Family of Companies

GitHub is an online software development platform used for storing, tracking, and collaborating on software projects. It has become the world’s largest coding community where independent and commercial computer software developers go for research and connections to open source code to develop new software and other computer programs.

Alarmingly, cybersecurity company Checkmarx recently revealed that it has discovered that hackers can effectively hijack GitHub’s star ratings of open-source products to trick developers into downloading malicious code.

In this article by Jay Fitzgerald for, the author discusses this discovery and its dangers.

