GitHub confirms breach of 3,800 internal repos after employee installs poisoned VS Code extension

1 · Siliconangle · May 20, 2026, 10:45 p.m.
Summary
GitHub has confirmed a security breach where hackers accessed approximately 3,800 internal code repositories due to an employee installing a compromised Visual Studio Code extension. The incident was detected on May 19 and involved a malicious extension found by GitHub's security team.