BTC $104925.2538
ETH $2492.1534
XRP $2.1865
BNB $649.3462
SOL $152.4818
DOGE $0.1855
TRX $0.2783
ADA $0.6694
stETH $2488.9105
WBTC $104867.6828
HYPE $34.0726
SUI $3.2841
wstETH $3000.8532
LINK $14.0245
AVAX $20.6518
USDS $0.9982
LEO $9.0733
XLM $0.2657
BCH $406.8060
TON $3.1963
HBAR $0.1689
LTC $88.3156
WETH $2491.6922
weETH $2663.7251
DOT $4.0267
XMR $325.3966
BSC-USD $0.9989
BGB $4.6675
BTCB $104866.5844
WBT $31.4499
USDE $1.0012
PEPE $0.0000
PI $0.6261
AAVE $253.6203
UNI $6.1751
sUSDe $1.1773
TAO $374.9828
DAI $0.9989
OKB $51.8888
APT $4.7571
NEAR $2.4129
CRO $0.0975
CBBTC $104966.3037
ICP $5.0311
ONDO $0.8302
ETC $17.1878
JITOSOL $183.9665
BTC $104925.2538
ETH $2492.1534
XRP $2.1865
BNB $649.3462
SOL $152.4818
DOGE $0.1855
TRX $0.2783
ADA $0.6694
stETH $2488.9105
WBTC $104867.6828
HYPE $34.0726
SUI $3.2841
wstETH $3000.8532
LINK $14.0245
AVAX $20.6518
USDS $0.9982
LEO $9.0733
XLM $0.2657
BCH $406.8060
TON $3.1963
HBAR $0.1689
LTC $88.3156
WETH $2491.6922
weETH $2663.7251
DOT $4.0267
XMR $325.3966
BSC-USD $0.9989
BGB $4.6675
BTCB $104866.5844
WBT $31.4499
USDE $1.0012
PEPE $0.0000
PI $0.6261
AAVE $253.6203
UNI $6.1751
sUSDe $1.1773
TAO $374.9828
DAI $0.9989
OKB $51.8888
APT $4.7571
NEAR $2.4129
CRO $0.0975
CBBTC $104966.3037
ICP $5.0311
ONDO $0.8302
ETC $17.1878
JITOSOL $183.9665
  • Catalog
  • Blog
  • Tor Relay
  • Jabber
  • One-Time notes
  • Temp Email
  • What is TOR?
  • We are in tor
  • Global scam by Stargazer Goblin: 3,000 fake GitHub accounts spreading malware

    The attacker, Stargazer Goblin, created a network of counterfeit GitHub accounts to distribute various malware. The scheme, which has generated $100,000 in illicit profits over the past year, includes more than 3,000 accounts used to host malicious links and software.

    The fraudulent “Stargazers Ghost Network,” named by Check Point, encompasses thousands of repositories hosting malware such as Atlantida Stealer, Rhadamanthys, RisePro, Lumma Stealer, and RedLine. These accounts are also involved in various activities on the platform to give them the appearance of legitimacy.

    The network's activities were detected in August 2022, but ads for the scheme appeared on the Dark Net only in early July 2023. According to experts, the network not only spreads malware but also performs other tasks to make these fake accounts look like regular users.

    To protect against being taken off the platform, Stargazer Goblin uses different categories of accounts for different aspects of the scheme. Some accounts create phishing repository templates, others host images for these templates, and still others add malware in the form of password-protected archives disguised as cracked software and game cheats.

    As GitHub accounts are detected and blocked, Stargazer Goblin updates links to new active malware releases, ensuring minimal disruption to operations. Some accounts in the network were previously compromised, and their credentials were likely obtained by ransomware.

    The Stargazer Ghost Network shows a high level of organization and adaptability, which allows attackers to minimize losses and quickly recover from GitHub's actions. Using different accounts for different tasks makes their infrastructure resistant to detection and removal from the platform.

    This case highlights the importance of international law enforcement cooperation in the fight against cybercrime and demonstrates how even the most influential dark web markets can be stopped.

    Top 10 Emerging Cybercrime Methods in 2024
    The Evolution of Data Ransom: A New Threat to Corporate Security

    Comments 0

    Add comment