For anyone who, like me, wasn't sure what's going on in the linked, archived PR: this is Mythos attempting to socially engineer a malicious PR during a test run by the UK AI Safety Institute.<p>AISI has published a report about the incident which was preciously discussed on HN: <a href="https://news.ycombinator.com/item?id=49175717">https://news.ycombinator.com/item?id=49175717</a>
Actual details on the incident: <a href="https://github.com/w1b/aisi-mythos-inc-2026-07-28-01-recovered-pr" rel="nofollow">https://github.com/w1b/aisi-mythos-inc-2026-07-28-01-recover...</a><p>Both the attacker and the target account are very similar and look fake/bots.
yeah, this being one component of the aisi incidents described here: <a href="https://cdn.prod.website-files.com/663bd486c5e4c81588db7a1d/6a724858f7db25c81487016d_Security%20Incident%20INC-2026-07-28-01.pdf" rel="nofollow">https://cdn.prod.website-files.com/663bd486c5e4c81588db7a1d/...</a>
Not going to comment on the PR commentary, but the victim GitHub account is suspicious itself, recent account, a few fresh repos, following 14.5k others, and I count three surnames on the account (the username, plus two in the README history).
I saw a contribution by this maintainer to another user who ALSO HAS 14.5k followers: <a href="https://github.com/yumiaura/myCat/pull/99" rel="nofollow">https://github.com/yumiaura/myCat/pull/99</a> "yumiaura" and a preference for "my[APPNAME]" repo naming.<p>What is this?<p>Are the histories that Github presents all derived from someone's uploaded git repo .. e.g. can I simply claim to have created a GIT repo in 1970, and the "github commit graph" will dutifully represent this claim in its green-colored activity graph?
yes, the github contributions heatmap is known to be open for manipulation. folks will use it to draw art by backdating commits.<p>if i have it right, only commits can be manipulated, other contributions should be <i>safe</i> — i don't know what is possible for orgs moving old discussion archives into github, see python's issues for reference<p>see: <a href="https://github.com/dspinellis/unix-history-repo" rel="nofollow">https://github.com/dspinellis/unix-history-repo</a>
They're almost certainly not genuine accounts, maybe used for karma farming, phishing, social engineering, future malware distribution?
Wait, who is the robot? Am I getting that right, someone in that thread is AI?
What does this malware do? Who operates it?
[dupe] <a href="https://news.ycombinator.com/item?id=49205790">https://news.ycombinator.com/item?id=49205790</a>
holy shit