GitHub is just the latest victim of TeamPCP, a gang that has carried out a spree of software supply chain attacks that has impacted hundreds of organizations.
GitHub says hackers stole about 3,800 internal repos after a poisoned VS Code extension hit an employee device ...
Trellix, the cybersecurity company trusted by thousands of enterprises and U.S. government agencies to stop hackers, has confirmed that an unauthorized party broke into a portion of its own source ...
A hacker going by the handle "Pl0xP" cloned a large number of GitHub repositories and slightly changed the cloned repository names, in a typosquatting effort to impersonate legitimate projects — thus ...
A reported software supply chain attack involving a malicious Visual Studio Code extension has exposed the growing security risks surrounding modern development environments.