Linux Flaws Expose Critical Infrastructure to Root Command Execution

GitHub confirmed that a compromised employee device, infected by a poisoned Nx Console VS Code extension, led to the theft of around 3,800 internal repositories, sparking swift action to contain the breach and protect sensitive data. The incident highlights the vulnerability of even the most secure systems to supply…

https://osintsights.com/linux-flaws-expose-critical-infrastructure-to-root-command-execution?utm_source=mastodon&utm_medium=social

#GithubBreach #SupplyChain #EmergingThreats #CodeExfiltration #ThreatActorTeampcp

Linux Flaws Expose Critical Infrastructure to Root Command Execution

Learn how GitHub was breached via the Nx Console VS Code extension, exposing critical infrastructure to security risks - read the full incident report now.

OSINTSights

GitHub Breach Exposes 3,800 Repos to TanStack Supply-Chain Attack

A single malicious Visual Studio Code extension, Nx Console version 18.95.0, was enough to spark a GitHub breach that exposed 3,800 internal repositories to a TanStack supply-chain attack. The poisoned extension was live on marketplaces for just 54 minutes, but long enough to steal credentials from a developer's machine.

https://osintsights.com/github-breach-exposes-3800-repos-to-tanstack-supply-chain-attack?utm_source=mastodon&utm_medium=social

#GithubBreach #SupplyChain #VisualStudioCode #MaliciousExtension #EmergingThreats

GitHub Breach Exposes 3,800 Repos to TanStack Supply-Chain Attack

Learn how a GitHub breach exposed 3800 repos to TanStack supply-chain attack via a malicious Visual Studio Code extension and protect your projects now.

OSINTSights

GitHub Breach Exposes 3,800 Repositories via Malicious VS Code Extension

GitHub's security chief confirms that customer data remains safe, with no evidence of impact outside of GitHub's internal repositories. The breach originated from a poisoned VS Code extension installed on a compromised employee device, allowing attackers to steal credentials.

https://osintsights.com/github-breach-exposes-3800-repositories-via-malicious-vs-code-extension?utm_source=mastodon&utm_medium=social

#GithubBreach #MaliciousVsCodeExtension #SupplyChain #EmergingThreats #CredentialTheft

GitHub Breach Exposes 3,800 Repositories via Malicious VS Code Extension

GitHub breach exposes 3,800 repositories via malicious VS Code extension, learn how to protect your code and prevent similar breaches now with expert security tips.

OSINTSights

GitHub Breach Exposes 3800 Internal Repositories to Malicious VS Code Extension

GitHub's security team swiftly contained a breach that exposed 3,800 internal repositories to a malicious VS Code extension, and immediately took action to prevent further damage. The company has completed critical secret rotations and is now meticulously analyzing logs to ensure the incident is fully…

https://osintsights.com/github-breach-exposes-3800-internal-repositories-to-malicious-vs-code-extension?utm_source=mastodon&utm_medium=social

#GithubBreach #MaliciousVsCodeExtension #SupplyChain #EmergingThreats #RepositoryBreach

GitHub Breach Exposes 3800 Internal Repositories to Malicious VS Code Extension

GitHub breach exposes 3800 repos to malicious VS Code extensions learn how to protect yourself now from code exploitation threats online today.

OSINTSights

GitHub Breach Exposes 3,800 Repos via Malicious VSCode Extension

GitHub recently uncovered a sneaky attack involving a tainted VS Code extension that compromised an employee's device, putting 3,800 repositories at risk. The breach was quickly contained, but not before some internal repositories were exfiltrated.

https://osintsights.com/github-breach-exposes-3800-repos-via-malicious-vscode-extension?utm_source=mastodon&utm_medium=social

#GithubBreach #MaliciousVscodeExtension #SupplyChain #EmergingThreats #RepositoryExfiltration

GitHub Breach Exposes 3,800 Repos via Malicious VSCode Extension

GitHub breach exposes 3,800 repos via malicious VSCode extension, learn how to protect your code now and prevent similar attacks on your repository.

OSINTSights

Grafana GitHub Breach Exposes Source Code in TanStack npm Attack

Grafana Labs recently reported a security breach that exposed source code and internal data, but fortunately, there's no evidence that customer production systems were compromised. The breach, detected on May 11, was confined to the company's GitHub environment and involved both public and private source code and internal repositories.

https://osintsights.com/grafana-github-breach-exposes-source-code-in-tanstack-npm-attack?utm_source=mastodon&utm_medium=social

#GithubBreach #Grafana #Tanstack #NpmAttack #SourceCodeExposure

Grafana GitHub Breach Exposes Source Code in TanStack npm Attack

Learn about the Grafana GitHub breach that exposed source code in a TanStack npm attack and find out what was accessed and when to protect your systems now.

OSINTSights

Grafana Labs Hit by GitHub Breach, Code Stolen in Ransom Demand

Grafana Labs sprang into action after a security breach at GitHub compromised its code, swiftly invalidating leaked credentials and bolstering defenses to prevent further unauthorized access. The company quickly responded to the breach, taking crucial steps to safeguard its environment.

https://osintsights.com/grafana-labs-hit-by-github-breach-code-stolen-in-ransom-demand?utm_source=mastodon&utm_medium=social

#GithubBreach #RansomwareDemand #CodeTheft #SupplyChain #EmergingThreats

Grafana Labs Hit by GitHub Breach, Code Stolen in Ransom Demand

Learn how Grafana Labs responded to a GitHub breach where code was stolen, and find out what security measures were taken to prevent future breaches now.

OSINTSights

Salesloft confirms breach via GitHub → attackers stole Drift OAuth tokens & compromised Salesforce integrations.

Victims include Cloudflare, Zscaler, Palo Alto, Tenable, Rubrik, Proofpoint, Elastic & more (700+ orgs).
Experts: Non-human identities like API tokens are the next security blind spot.

💬 How is your org tackling API token risks? Follow @technadu for updates.

#Salesloft #GitHubBreach #CyberAttack #DataExposure #ThreatActor #CyberSecurity #SupplyChainRisk