I made the most common homelab security mistake of all time (and I'm not alone) ...
Hackers use credentials stolen in the GlassWorm campaign to access GitHub accounts and inject malware into Python repositories.