GitHub confirms breach – thousands of internal repositories hit after employee installs malicious VS Code extension
GitHub confirms that an employee’s compromised device led to the exfiltration of internal repositories via a poisoned VSCode extension Threat actors TeamPCP are selling an archive of around 4,000 repos on the dark web, asking $50,000 with samples shared for proof The group is also behind the latest npm supply chain attacks, highlighting its ongoing […]









