AISI has published a report about the incident which was preciously discussed on HN: https://news.ycombinator.com/item?id=49175717
Both the attacker and the target account are very similar and look fake/bots.
What is this?
Are the histories that Github presents all derived from someone's uploaded git repo .. e.g. can I simply claim to have created a GIT repo in 1970, and the "github commit graph" will dutifully represent this claim in its green-colored activity graph?
if i have it right, only commits can be manipulated, other contributions should be safe — i don't know what is possible for orgs moving old discussion archives into github, see python's issues for reference
Any chance I can ask it to social engineer to get a normal style?