Security News GlassWorm Attack Uses Stolen GitHub Tokens to Force-Push Malware Into Python Repos TheHackerNews Daniel Bender 16 Mar 2026 Share GlassWorm campaign injects malware into GitHub Python repos using stolen tokens since March 8, 2026, exposing developers to supply-chain compromise.