info on the github breach appears to only be available on xitter 🙄 , I fished it out for you.

#github

gonna gently push back that there's no reason (according to github's version of the story) to associate this with AI or with spectacular incompetence on the part of the employee; the issue is that industry standard, extremely widely used text editor Visual Studio Code has a big button that says "click here to add useful functionality to do your job" that has a 1% chance of installing ransomware

@0xabad1dea but it is the same company, so they are not at all absolved

Edit: and yes, you are very right about how problematic that is.