• potatO_0
    link
    fedilink
    English
    arrow-up
    1
    ·
    26 days ago

    The underlying investigation is genuine. Here’s the trail if you want to verify:

    Reddit (r/AskNetsec) - the specific forensic questions I’m trying to answer, macOS + Copilot agent angle

    Security.StackExchange - detailed technical post on the git identity spoofing and infection timeline

    GitHub repo - IOCs and detection scripts, actively updated

    Trend Micro report - the published research this maps to

    I’ve also reached out to Lucas Silva at Trend Micro directly with my specific IOCs.