This AI-coded malware apparently leaked its own GitHub private token
… The researchers say the infostealer posed as an internal "archive deployment sync utility", but in reality, it "authenticates to GitHub using an environment token or a hard-coded fallback , checks whether a target repository exists, creates it if needed, then recursively walks a local directory and… …