Cybersecurity & Privacy — 2026-03-17

GlassWorm Supply Chain Attack Compromises Hundreds of Python Repos via Stolen GitHub Tokens

The GlassWorm threat actor leveraged stolen GitHub tokens to inject malware into hundreds of Python repositories by force-pushing to default branches, rewriting git history while preserving original commit messages and authors. Targets include Django apps, ML research code, Streamlit dashboards, and PyPI packages. The attack, active since March 3-9, uses a novel injection method that leaves no pull request or commit trail in GitHub's UI.

Analysis
Prior digest covered VS Code and npm extension compromises by GlassWorm dating to October 2025. The GitHub token-based attack represents a new vector for the same actor, with the force-push technique making detection significantly harder than the earlier extension poisoning campaigns.

View in full brief →

UNCLASSIFIED // OPEN SOURCE