A peer-reviewed CMU study (ICSE 2026) identified 6 million fake GitHub stars across 18,617 repositories using 301,000 accounts, with AI/LLM repos as the largest non-malicious category. Stars sell openly for $0.03–$0.85 each on dozens of platforms, and VCs explicitly use star counts as sourcing signals — Redpoint data shows the
19 Comments
Sort: