GitHub repos bombarded by info-stealing commits masked as Dependabot

https://www.bleepingcomputer.com/news/security/github-repos-bombarded-by-info-stealing-commits-masked-as-dependabot/