Hackers backdoor PHP source code after internal repo hack

Catalin Cimpanu reports:

Hackers have breached the internal Git repository of the PHP programming language and have added a backdoor to the PHP source code in an attack that took place over the weekend, on Sunday, March 28.

The backdoor mechanism was first spotted by Michael Voříšek, a Czech-based software engineer.

If the malicious code had made it into production, the code would have allowed threat actors to execute their own malicious PHP commands on victims’ servers.

Read more on The Record.

