
GitHub breach exposes 3,800 repos via malicious VS Code extension
A GitHub breach may have exposed about 3,800 internal projects after an employee installed a malicious VS Code extension linked to TeamPCP. The attack appears to have only stolen company code, and GitHub quickly rotated secrets and isolated the infected computer. Investigators have not yet shared the full attack method, but experts suggest that reused tokens and extension malware might be involved. Security teams are advising better control of developer tools and careful monitoring. It remains uncertain if attackers tried to stay inside GitHub systems or if more attacks may follow.













