@nixCraft great work! 🫡🥰
Just a point of clarification question. When you say: 'Each of these repositories contains a zip archive with a Trojan.'
Is this a link to a zip archive in README.md? Or does this zip archive decompress and auto execute on a Windows system when the repo is downloaded?
This could be evidence of complicity, no? An AI with access to thousands of repos suggests an inside job?
Thank God i switched to Codeberg.org a while back...