> FakeGit Campaign Uses 7,600 GitHub Repositories to Spread SmartLoader Malware
[DATE: 20/07/2026 18:23]
[LANGUAGE: EN]
Cybersecurity researchers have discovered nearly 7,600 malicious GitHub repositories, out of which more than 800 pose as artificial intelligence (AI) skills or Model Context Protocol (MCP) servers to deliver a malware family known as SmartLoader as part of an ongoing campaign codenamed FakeGit.
"FakeGit uses copied projects, lookalike developer profiles, convincing READMEs, and malicious ZIP