Hosted on MSN
A poisoned VS Code extension led to a GitHub breach, and Microsoft owns every link in the chain
Visual Studio Code (or one of its many forks) is used by a huge number of developers, and the thing that makes it worth using isn't really the editor at all. It's the extensions which make it ...
Update May 21: GitHub has now linked this breach to the TanStack npm supply-chain attack and says the employee installed a malicious version of the Nx Console extension. GitHub has confirmed that ...
GitHub confirmed on May 20 that a poisoned VS Code extension installed on an employee’s device gave attackers access to roughly 3,800 internal repositories at the Microsoft-owned code storage and ...
Some results have been hidden because they may be inaccessible to you
Show inaccessible results