Cybersecurity researchers have discovered nearly 7,600
malicious GitHub repositories, out of which more than 800 pose as
artificial intelligence (AI) skills or Model Context Protocol (MCP)
servers to deliver a malware family known as SmartLoader as part of
an ongoing campaign codenamed FakeGit. "FakeGit uses copied
projects, lookalike developer profiles, convincing READMEs, and
malicious ZIP
Read more https://thehackernews.com/2026/07/fakegit-campaign-uses-7600-github.html

