#github-breach

[ follow ]
Information security
fromArs Technica
1 week ago

A hacker group is poisoning open source code at an unprecedented scale

TeamPCP has carried out frequent software supply chain attacks by corrupting legitimate tools, including a GitHub breach via a poisoned VSCode extension, compromising thousands of repositories.
Information security
fromTechCrunch
1 week ago

GitHub says hackers stole data from thousands of internal repositories | TechCrunch

Attackers compromised an employee device via a poisoned VS Code extension and stole data from about 3,800 internal GitHub repositories.
Information security
fromTechCrunch
8 months ago

Salesloft says Drift customer data thefts linked to March GitHub account hack | TechCrunch

A March GitHub breach at Salesloft allowed theft of authentication and OAuth tokens, enabling mass hacks of multiple large tech customers and a supply-chain compromise.
[ Load more ]