GitHub's internal repos breached by TeamPCP, who've now hit GitHub, PyPI, NPM, Docker, Aqua Security, and OpenAI. At some point you have to ask if the entire supply chain is just one big unlocked filing cabinet.

https://www.bleepingcomputer.com/news/security/github-investigates-internal-repositories-breach-claimed-by-teampcp/

GitHub investigates internal repositories breach claimed by TeamPCP

GitHub is investigating a breach of its internal repositories after the TeamPCP hacker group claimed to have accessed approximately 4,000 repositories containing private code.

BleepingComputer