threat-intel
GitHub Confirms Breach, 4K Internal Repos Stolen
High
Summary
GitHub experienced a data breach where approximately 4,000 internal code repositories were stolen by the threat actor TeamPCP. The breach originated from a poisoned VS Code extension compromising an employee's device, and TeamPCP threatened to leak the data unless a buyer was found. GitHub responded swiftly by containing the compromise and rotating critical credentials.
Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data
