GitHub Compromised by TeamPCP, Exposing Internal Repositories
GitHub, a Microsoft-owned platform for code hosting and collaboration, has confirmed a security breach attributed to the hacking group TeamPCP. The breach involved the compromise of an employee's device through a malicious Visual Studio Code extension, leading to the exfiltration of approximately 3800 private code repositories. The compromised extension, nrwl.angular-console, had over 2.2 million installations. GitHub is currently investigating the incident and has stated that there is no evidence of customer data being affected outside of its internal repositories. The breach is part of a series of attacks by TeamPCP, known for targeting developer tools and open-source ecosystems.