GitHub Scams Target Dory App by Segev Sherry
Segev Sherry, the developer of the Dory app, has been targeted by a scam on GitHub, where fraudsters created fake accounts and apps resembling his work, aiming to distribute malware. These scammers exploit GitHub by creating fake repositories and mimicking genuine apps to deceive users. The original Dory app costs €10, but malicious actors have been using clone versions to trick unsuspecting consumers. \n\nThis incident is part of a broader pattern of GitHub-based scams, where attackers set up fake issues with security alert themes to lure users into clicking malicious links or authorizing harmful OAuth apps. Victims often think they are downloading the app from legitimate sources, not realizing the hidden dangers.\n\nMeasures to protect yourself include verifying app authenticity, avoiding direct clicks on security alert emails, checking OAuth permissions carefully,…