Get the latest tech news
Active phishing campaign targeting crates.io users
Empowering everyone to build reliable and efficient software.
We received multiple reports of a phishing campaign targeting crates.io users (from the rustfoundation.dev domain name), mentioning a compromise of our infrastructure and asking users to authenticate to limit damage to their crates. These emails are malicious and come from a domain name not controlled by the Rust Foundation (nor the Rust Project), seemingly with the purpose of stealing your GitHub credentials. We are taking steps to get the domain name taken down and to monitor for suspicious activity on crates.io.
Or read this on Hacker News