13 stories tagged #GitHub

  1. Anthropic Denies Claude Fable 5 Jailbreak Claims Amid Security Debate
    tech

    Anthropic Denies Claude Fable 5 Jailbreak Claims Amid Security Debate

    Anthropic rejects allegations that Claude Fable 5 was compromised by multi-agent attacks shortly after launch, citing extensive pre-release safety testing and layered defense architecture.

    last wk. 1 min read
  2. Claude Code Bug Could Expose GitHub Credentials, Microsoft Warns
    tech

    Claude Code Bug Could Expose GitHub Credentials, Microsoft Warns

    Microsoft reveals patched vulnerability in Anthropic's Claude Code that could allow credential theft via prompt injection attacks in GitHub workflows.

    2w ago 1 min read
  3. Malicious ‘TrapDoor’ Targets Crypto and AI Developers
    tech

    Malicious ‘TrapDoor’ Targets Crypto and AI Developers

    A supply chain attack dubbed ‘TrapDoor’ deploys over 34 malicious packages targeting crypto, AI, and security developers.

    last mo. 1 min read
  4. Hacker Group TeamPCP Poisons Open Source Code at Unprecedented Scale
    tech

    Hacker Group TeamPCP Poisons Open Source Code at Unprecedented Scale

    TeamPCP has breached GitHub and hundreds of firms via software supply chain attacks, using a self-spreading worm to steal credentials and data.

    last mo. 1 min read
  5. GitHub Breach: Hacker Group Steals 3,800 Internal Repos via Poisoned VS Code Extension
    tech

    GitHub Breach: Hacker Group Steals 3,800 Internal Repos via Poisoned VS Code Extension

    GitHub confirmed a breach where a poisoned VS Code extension led to the exfiltration of 3,800 internal repositories. Customer data was not impacted.

    last mo. 1 min read
  6. GitHub Breached: 3,800 Internal Repos Stolen via Poisoned VS Code Extension
    tech

    GitHub Breached: 3,800 Internal Repos Stolen via Poisoned VS Code Extension

    TeamPCP compromised GitHub via a malicious VS Code extension, stealing source code for Actions, Copilot, and CodeQL, now sold for $50,000.

    last mo. 1 min read
  7. GitHub Confirms Theft of 3,800 Internal Repos via Malicious VS Code Extension
    tech

    GitHub Confirms Theft of 3,800 Internal Repos via Malicious VS Code Extension

    A GitHub employee installed a poisoned VS Code extension, leading to the exfiltration of roughly 3,800 internal code repositories by hacker group TeamPCP.

    last mo. 1 min read
  8. GitHub Probes Data Breach After Employee Device Hijacked via Malicious VS Code Extension
    tech

    GitHub Probes Data Breach After Employee Device Hijacked via Malicious VS Code Extension

    GitHub investigates unauthorized access to internal repositories after an employee device was compromised. Hacker group TeamPCP claims to have stolen 4,000 private repos.

    last mo. 1 min read