惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

Y
Y Combinator Blog
The GitHub Blog
The GitHub Blog
Vercel News
Vercel News
D
DataBreaches.Net
MongoDB | Blog
MongoDB | Blog
H
Help Net Security
小众软件
小众软件
美团技术团队
T
The Blog of Author Tim Ferriss
爱范儿
爱范儿
D
Docker
Martin Fowler
Martin Fowler
大猫的无限游戏
大猫的无限游戏
博客园 - 聂微东
Blog — PlanetScale
Blog — PlanetScale
H
Hackread – Cybersecurity News, Data Breaches, AI and More
罗磊的独立博客
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
V
V2EX
S
SegmentFault 最新的问题
云风的 BLOG
云风的 BLOG
B
Blog
雷峰网
雷峰网
The Cloudflare Blog

SiliconANGLE

Will agentic AI governance run amok? The lesson of Asimov’s Three Laws - SiliconANGLE AI + quantum, Amazon vs. Starlink and the wide-open US-China internet battle - SiliconANGLE Team Cymru launches Total Insights Feed to replace legacy threat intelligence lists - SiliconANGLE AI Mode in Chrome adds split-screen view to enhance the web search experience - SiliconANGLE Resolve AI raises $40M at $1.5B valuation to optimize production environments - SiliconANGLE How Zscaler and OpenAI turn zero-trust security into an AI accelerator - SiliconANGLE OpenAI ratchets up Codex's agentic capabilities to rival Claude Code - SiliconANGLE Anthropic launches Claude Opus 4.7 with coding, visual reasoning improvements - SiliconANGLE Slash raises $100M at a $1.4B valuation to expand AI-powered banking platform for online businesses - SiliconANGLE Canva unveils Canva AI 2.0, recasting its platform as an agentic system for work - SiliconANGLE Data center, consumer device chips boost TSMC’s revenue - SiliconANGLE Mission-critical security cannot be bolted on, says Oracle - SiliconANGLE Agentic infrastructure reshapes enterprise AI - SiliconANGLE Data quality, and data freedom, foundational for AI success - SiliconANGLE Data trust is a bedrock in successful, scalable AI outcomes - SiliconANGLE Google introduces new agentic AI-ready tools and resources for Android developers  - SiliconANGLE Agentic AI orchestration separates winners from laggards - SiliconANGLE Data-driven tools turning the tide against human trafficking - SiliconANGLE Achieving trusted AI development goes beyond 'vibes' - SiliconANGLE Impinj boosts edge computing power in updated R700 RAIN RFID reader - SiliconANGLE Certinia powers professional services with AI - SiliconANGLE Antioch prepares to accelerate simulated testing for autonomous robots after raising $8.5M - SiliconANGLE Developer tooling startup Expo nabs $45M investment - SiliconANGLE Solidroad lands $25M to bring AI to customer support interactions - SiliconANGLE DuploCloud lands compliance and AI governance certifications as enterprise buyers tighten scrutiny - SiliconANGLE Lua lands $5.8M to help businesses build and manage AI agent workforces - SiliconANGLE Best of frenemies: Oracle's and AWS' clouds unite with dedicated, private connectivity - SiliconANGLE NIST shifts National Vulnerability Database to risk-based triage as CVE submissions hit record levels - SiliconANGLE Cisco goes to the races with new Churchill Downs multiyear partnership - SiliconANGLE Susecon 2026 will tackle the future of open-source platforms - SiliconANGLE
GitHub confirms breach of 3,800 internal repos after empl...
Duncan Riley · 2026-05-21 · via SiliconANGLE

GitHub confirms breach of 3,800 internal repos after employee installs poisoned VS Code extension

GitHub Inc. has confirmed that hackers exfiltrated roughly 3,800 of its internal code repositories after one of its employees installed a poisoned Visual Studio Code extension, the Microsoft Corp.-owned developer platform disclosed late Tuesday.

The breach was detected on May 19 and traced to a malicious extension that GitHub’s security team found on the employee’s device. GitHub said the compromise has been contained and that customer data and code stored on the platform were not affected.

“We removed the malicious extension version, isolated the endpoint and began incident response immediately,” GitHub said in a series of posts on X. “Critical secrets were rotated yesterday and overnight with the highest-impact credentials prioritized first.”

GitHub has not named the extension or said how it reached the employee’s device. A fuller post-incident report is promised once the investigation wraps.

The hacking group TeamPCP claimed the breach on the Breached cybercrime forum, posting GitHub’s source code and what it said was about 4,000 private repositories for sale at a starting price of $50,000. TeamPCP said it would sell only to a single buyer and would dump the data publicly if no offer came in. GitHub put the real number closer to 3,800 but said TeamPCP’s claim was “directionally consistent” with what its own investigation had found.

TeamPCP has spent much of 2026 hitting developer ecosystems. Campaigns tied to the group have compromised Aqua Security’s Trivy vulnerability scanner, Checkmarx Inc.’s KICS infrastructure-as-code analyzer, the LiteLLM Python client and Telnyx LLC’s official software development kit, with downstream victims including the European Commission. The group has also used typosquatting on the Python Package Index and, according to security researchers, formed working partnerships with extortion and ransomware operators including Lapsus$ and the Vect ransomware group.

GitHub hosts code for more than 100 million developers, which makes its own source code a prize for attackers looking for footholds across the wider software industry. Visual Studio Code extensions, meanwhile, have become a recurring problem. Researchers have flagged trojanized listings on the marketplace used to harvest credentials, mine cryptocurrency and exfiltrate data, with some racking up large install counts before being pulled.

Part of the problem is design. Visual Studio Code extensions run with broad permissions on developer machines and sit alongside source code, credentials and build pipelines, which puts them in a position most endpoint security tools cannot see into.

Discussing the news, Morey Haber, chief security advisor at privileged access security firm BeyondTrust Corp., told SiliconANGLE via email that the breach is a reminder that developer environments now carry the same strategic value as core enterprise infrastructure.

“Developer workstations now possess the same strategic value as domain controllers, and access to source code repositories, secrets, SSH keys, cloud credentials, signing certificates and deployment pipelines can transform a single compromised endpoint into a cascading supply chain incident,” Haber said. “TeamPCP appears to have understood this attack path, and their recent activity demonstrates a systematic focus on poisoning trusted developer ecosystems rather than directly attacking hardened infrastructure.”

Agnidipta Sarkar, chief evangelist at zero trust microsegmentation provider ColorTokens Inc., noted that the bigger concern may be what attackers can do with GitHub’s own platform code rather than what they took from the repositories themselves.

“Attackers now have access to GitHub’s own platform code, Actions runners, authentication flows, secret scanning, Copilot backend and more and that is enough knowledge to launch zero-days, convincing phishing or bypasses that affect users later, even if customer repos were not touched,” Sarkar said. “Security teams should treat GitHub as potentially compromised upstream, inventory all GitHub connections and rotate or reset all auth and access, especially API keys and immediately move to cryptographic passwordless identities.”

Image: GitHub

A message from John Furrier, co-founder of SiliconANGLE:

Support our mission to keep content open and free by engaging with theCUBE community. Join theCUBE’s Alumni Trust Network, where technology leaders connect, share intelligence and create opportunities.

  • 15M+ viewers of theCUBE videos, powering conversations across AI, cloud, cybersecurity and more
  • 11.4k+ theCUBE alumni — Connect with more than 11,400 tech and business leaders shaping the future through a unique trusted-based network.

About SiliconANGLE Media

SiliconANGLE Media is a recognized leader in digital media innovation, uniting breakthrough technology, strategic insights and real-time audience engagement. As the parent company of SiliconANGLE, theCUBE Network, theCUBE Research, CUBE365, theCUBE AI and theCUBE SuperStudios — with flagship locations in Silicon Valley and the New York Stock Exchange — SiliconANGLE Media operates at the intersection of media, technology and AI.

Founded by tech visionaries John Furrier and Dave Vellante, SiliconANGLE Media has built a dynamic ecosystem of industry-leading digital media brands that reach 15+ million elite tech professionals. Our new proprietary theCUBE AI Video Cloud is breaking ground in audience interaction, leveraging theCUBEai.com neural network to help technology companies make data-driven decisions and stay at the forefront of industry conversations.