Tech Jan 28, 2026 4 min GitHub Repo Squatting: A Supply Chain Attack Masquerading as Official URLs An explanation of a new attack technique that abuses GitHub’s fork feature and commit display behavior to distribute malware via links that look like official repository URLs. Security GitHub Supply Chain Attack