GitHub comments used to distribute malware (BleepingComputer)
GitHub comments used to distribute malware (BleepingComputer)
Posted Apr 25, 2024 12:43 UTC (Thu) by bluss (guest, #47454)In reply to: GitHub comments used to distribute malware (BleepingComputer) by Heretic_Blacksheep
Parent article: GitHub comments used to distribute malware (BleepingComputer)
Users can comment on any commit in a github repo, not just in issues and PRs. To turn that off I think you have to go to the 'Limit to repository collaborators' setting for 6 months, it doesn't have an indefinite setting.
