GitHub Confirms 3,800 Internal Repos Stolen Through Poisoned VS Code Extension

Decrypt3h agoUpdated 3h ago
GitHub Confirms 3,800 Internal Repos Stolen Through Poisoned VS Code Extension
Smart Read

TeamPCP gained access to GitHub's private source code after an employee unknowingly installed a malicious coding tool....

Key takeaways

  • 1GitHub confirmed that 3,800 internal repositories were stolen after an employee installed a malicious VS Code extension from TeamPCP.
  • 2The attack exploited supply chain vulnerabilities through compromised developer tools, bypassing traditional security measures.
  • 3Employee credential compromise through social engineering enabled unauthorized access to GitHub's private source code repositories.

Coins in this story

ETH
₹2,318.87
+1.82%
XRP
₹1.43
+3.36%
BNB
₹654.53
+2.58%

Why it matters

This highlights critical supply chain security risks for Indian developers and enterprises using popular development tools; compromised credentials at major platforms could expose proprietary code and data, affecting startups and established tech companies relying on secure code repositories.

Part of narrative
Memes

Explore how Memes is shaping crypto markets — aggregated stories, leading coins, and weekly momentum.

Explore narrative

Related stories

AI Watchdog Warns of 'Rogue Deployment' Risk at Top Labs, With Capabilities Growing Fast
Decrypt5h ago60-word brief

AI Watchdog Warns of 'Rogue Deployment' Risk at Top Labs, With Capabilities Growing Fast

An AI safety watchdog raised alarm over risks of "rogue deployment" at leading AI labs, as AI capabilities accelerate rapidly. The warning highlights regulatory gaps in artificial intelligence development. While not directly crypto-related, this concerns blockchain investors as AI integration into crypto platforms grows, affecting security protocols and market infrastructure trustworthiness for Indian investors holding digital assets.

HYPE Surges 101% This Year: What’s Driving Hyperliquid’s Growth?
Decrypt6h ago60-word brief

HYPE Surges 101% This Year: What’s Driving Hyperliquid’s Growth?

HYPE token surged 8.01% to $51.39, continuing its 101% year-to-date rally as Hyperliquid gains momentum. The decentralized perpetuals exchange platform attracts traders seeking alternatives to centralized derivatives markets. Growth drivers include expanding leverage trading features and community adoption. While specific India-related developments aren't detailed, rising DeFi adoption among Indian crypto investors makes such platforms increasingly relevant for derivatives trading activity.

Tether Tightens Grip on Bitcoin Treasury Firm Twenty One With SoftBank Buyout
Decrypt4h ago60-word brief

Tether Tightens Grip on Bitcoin Treasury Firm Twenty One With SoftBank Buyout

After dropping nearly $1 billion on the Bitcoin treasury firm co-founded by Tether, Japanese investment firm SoftBank has been bought out....

KryptoKite aggregates and summarises third-party crypto news. This is informational content, not investment advice. KryptoKite does not recommend buying or selling any asset.