BTC $71,807
2026 Bull Run Is Building Start trading with 5% OFF all fees
Sign Up Now
BTC $71,807
Bull Run 2026 | 5% Off Fees Open your Binance account today
Sign Up

FakeGit campaign uses 800 fake AI tools to spread SmartLoader malware

FakeGit campaign uses 7,600 malicious repos to deliver SmartLoader and StealC malware.

  • Cybersecurity researchers uncovered nearly 7,600 malicious GitHub repositories in the FakeGit campaign, with over 800 posing as AI skills or MCP servers.
  • The repositories deliver SmartLoader malware, which deploys the StealC information stealer to harvest sensitive data.
  • A new technique called AgentBaiting allows AI agents to discover these bogus repositories without human intervention.
  • Tests show Anthropic Claude Code, Google Gemini, and OpenAI ChatGPT are susceptible to this trickery.
  • The campaign has recorded more than 14 million downloads across about 200 repository releases as of July 2026.

Cybersecurity researchers have identified a massive campaign dubbed FakeGit, involving nearly 7,600 malicious GitHub repositories that deliver SmartLoader malware, with over 800 specifically designed to mimic AI skills or Model Context Protocol (MCP) servers. Island lead researcher Oleg Zaytsev said the campaign uses copied projects, lookalike profiles, and convincing READMEs to trick users into downloading malicious ZIP files.

- Advertisement -

The ultimate goal is to deploy StealC, an information stealer capable of harvesting a wide range of data from compromised systems. The use of trojanized MCP servers to distribute SmartLoader and StealC was flagged earlier this year by Straiker AI and subsequently by Derp.ca.

A concerning evolution called AgentBaiting enables AI agents to discover these bogus repositories on their own. Island tests showed that Anthropic Claude Code, Google Gemini, and OpenAI ChatGPT can be tricked into surfacing malicious repositories without being given a direct link.

The FakeGit operation has recorded more than 14 million downloads across GitHub Release assets in about 200 campaign repositories. These repositories borrowed names of familiar tools like Gmail, WhatsApp, Databricks, Jenkins, and Docker to appear legitimate.

Over 600 campaign listings have been found on public MCP and Skill registries such as LobeHub, Glama, MCP.so, and MCP Market. Island advises building a catalog of reviewed skills and verifying publishers to counter the threat.

- Advertisement -

✅ Follow BITNEWSBOT on Telegram, Facebook, LinkedIn, X.com, and Google News for instant updates.

Previous Articles:

- Advertisement -
Ad
Altseason Is Loading. Don't watch from the sidelines.
SOL $90.51
DOGE $0.0963
LINK $9.02
SUI $1.00
5% off fees when you sign up
Start Trading
Ad
Pay Less on Every Trade. For Life.
$10K/mo volume Save $60/yr
$50K/mo volume Save $300/yr
$100K/mo volume Save $600/yr
5% off all trading fees when you sign up
Claim Your Discount

Latest News

US Senate Delays Crypto Clarity Act Vote Until September

The U.S. Senate will not vote on the Clarity Act before its August recess,...

Trump could net big tax windfall from crypto ethics plan

A bipartisan ethics proposal tied to a crypto market structure bill includes a tax-deferral...

Musk’s Terafab: 50x Pentagon, $16.8B, 3,000 jobs

Elon Musk outlined Terafab’s massive scale, saying the Texas semiconductor complex will be 50...

MARA swings to $611M loss despite record Bitcoin production

MARA swung to a net loss of $611.3 million in Q2 2026, driven by...

SEC Bought Airline Ticket Data Without Warrant, Docs Show

The SEC purchased access to a global airline ticketing database with over 1 billion...

Must Read

How to Buy VPS with Crypto from Hostinger – Step by Step guide

Did you know that nowadays you can use Bitcoin to purchase a Windows VPS? If you’re here, you’re probably wondering how to do it....
Ad
Altseason Is Loading. These 4 coins are trending right now.
SOL $92.12
DOGE $0.0950
LINK $9.02
SUI $1.02
5% off spot fees when you sign up
Start Trading