Someone is trying to pull off a supply chain attack similar to npm’s but on crates.io: https://github.com/rust-lang/crates.io/discussions/11889
Crates.io phishing · rust-lang crates.io · Discussion #11889

In light of the recent NPM compromise, I wanted to warn others who might receive similar messages. Immediately after publishing a new version of https://crates.io/crates/zerofs, I received the foll...

GitHub
@fasterthanlime doesn’t look like supply chain, looks like GitHub credential phishing.