AI IntelligenceMay 20, 2026AI Intelligence
Article
GitHub confirmed that a poisoned VS Code extension on an employee's device gave attackers access to roughly 3,800 internal repositories.
The threat group TeamPCP is already advertising the stolen data — an alarming incident for software supply chain security.
Data Cube AI EditorialSource: VentureBeat
01
Source Brief
GitHub confirmed that a poisoned VS Code extension on an employee's device gave attackers access to roughly 3,800 internal repositories. The threat group TeamPCP is already advertising the stolen data — an alarming incident for software supply chain security.
02