GitHub says hackers stole about 3,800 internal repos after a poisoned VS Code extension hit an employee device ...
GitHub hack exposed 3,800 internal repos through a poisoned VS Code extension, raising new concerns over developer supply ...
On May 19 GitHub confirmed the security breach across its social media channels, verifying that there was unauthorized access to internal repositories and stating that it was monitoring the situation ...
GitHub confirmed an attacker was able to access its internal repositories after a code extension breach, with TeamPCP claiming credit.
GitHub internal repositories breached via malicious VS Code extension; TeamPCP demands $50K for 3,800 stolen repos May 2026.
A major cyber scare has hit GitHub, with hackers from TeamPCP claiming they accessed nearly 4,000 private repositories, including internal source code.
GitHub is just the latest victim of TeamPCP, a gang that has carried out a spree of software supply chain attacks that has impacted hundreds of organizations.
GitHub said that it was hacked through a compromised employee device, with the hacker now selling private code on the dark web for hundreds of thousands.
The code hosting giant GitHub said it was investigating a breach but said there was no evidence of customer data theft.
TeamPCP is an increasingly notorious group of cybercriminals that carry out software supply chain attacks, where hundreds of ...