MEDIUMVulnerability
Global

Red Hat removes tainted packages after software pipeline compromise

·Source: The Record

Updated:

Executive Summary

According to the company’s preliminary analysis, a compromised GitHub account was used to push the malicious code out to customers, hitting 32 packages downloaded roughly 117,000 times a week.

Analysis

According to the company’s preliminary analysis, a compromised GitHub account was used to push the malicious code out to customers, hitting 32 packages downloaded roughly 117,000 times a week.
Source Attribution

Originally published by The Record on Jun 2, 2026.

Related Threats