All repos in my git account are under attack, a fake force push is being made on all repo default branch #197548
Replies: 2 comments 1 reply
This comment was marked as spam.
This comment was marked as spam.
-
|
This is a sign your account or a connected token/app has been compromised. Act immediately: Settings → Developer settings → Personal access tokens → revoke all tokens Step 2 — Change your password + enable 2FA Settings → Password and authentication → change password immediately Step 3 — Revoke all active sessions Settings → Sessions → revoke everything except your current session Step 4 — Protect your branches Go to each repo → Settings → Branches → Add branch protection rule on main Step 5 — Contact GitHub Support immediately Go to support.github.com → report a compromised account Step 6 — Check your security log Settings → Security log → look for unfamiliar IPs or token-based logins The force pushes will stop once all tokens and access methods are revoked. 👍 |
Beta Was this translation helpful? Give feedback.
Uh oh!
There was an error while loading. Please reload this page.
-
Discussion Type
Question
Discussion Content
Hello,

is anyone facing any issue with malware based code getting pushed to repos main branch, all repos under my account main branch is under attack, a force push is being made.
Beta Was this translation helpful? Give feedback.
All reactions