GitHub says hackers stole data from thousands of internal repositories - BERITAJA
GitHub says hackers stole data from thousands of internal repositories - BERITAJA is one of the most discussed topics today. In this article, you will find a clear explanation, key facts, and the latest updates related to this topic, presented in a concise and easy-to-understand way. Read more news on Beritaja.
Image Credits:GitHub6:25 AM PDT · May 20, 2026
GitHub, the celebrated developer level owned by Microsoft, confirmed it was hacked and attackers had stolen information from about 3,800 soul codification repositories.
The codification hosting and sharing elephantine said in a bid of posts connected X that it has “no grounds of effect to customer accusation stored extracurricular of GitHub’s soul repositories,” but noted its investigation was ongoing. GitHub said it “detected and contained a discuss of an worker instrumentality involving a poisoned VS Code extension,” referring to a plugin for Visual Studio Code, a celebrated codification editor that developers usage for programming.
Hackers are progressively targeting celebrated open-source projects, including coding extensions, pinch the purpose of compromising developers’ computers and their projects. Targeting celebrated projects allows hackers to summation entree to immense numbers of computers astatine the aforesaid time, magnifying the effect of their attacks.
GitHub did not sanction the compromised extension.
The Record and Bleeping Computer study that a hacking group called TeamPCP has taken in installments for the GitHub breach, and is trading the information connected a cybercrime forum.
GitHub did not instantly respond to a petition for remark about the incident, aliases reply questions connected whether it has received immoderate connection from the hackers, specified arsenic a request for ransom.
TeamPCP antecedently claimed in installments for a information breach astatine the European Commission that resulted successful the theft of much than 90 gigabytes of information from the unreality retention of the EU’s executive arm. The hackers had stolen the European Commission’s unreality cardinal during an earlier breach astatine Trivy, a vulnerability scanning tool, by pushing info-stealing malware to Trivy’s downstream users.
OpenAI was besides targeted precocious successful a akin but abstracted attack that saw hackers break into Tanstack, a level utilized by web developers, to push updates containing malware that fto the hackers bargain passwords and tokens from users.
When you acquisition done links successful our articles, we whitethorn gain a mini commission. This doesn’t impact our editorial independence.
Zack Whittaker is the information editor astatine TechCrunch. He besides authors the play cybersecurity newsletter, this week successful security.
He could beryllium reached via encrypted connection astatine zackwhittaker.1337 connected Signal. You could besides interaction him by email, aliases to verify outreach, astatine zack.whittaker@beritaja.com.
Subscribe
This article discusses GitHub says hackers stole data from thousands of internal repositories - BERITAJA in detail, including key facts, recent developments, and important insights that readers are actively searching for online.