أبرز الأخبار
5 وسائل إعلام·7 تقارير

غيت هاب تؤكد سرقة قراصنة لآلاف من مستودعات الأكواد البرمجية الداخلية بعد تثبيت موظف لإضافة خبيثة في فيجوال ستوديو كود

تحقق شركة غيت هاب في وصول غير مصرح به إلى مستودعات الأكواد البرمجية الداخلية التابعة لها عقب اختراق أدى إلى تعريض الآلاف منها للخطر. وقد تبيّن أن الاختراق نجم عن إضافة خبيثة في برنامج فيجوال ستوديو كود قام أحد الموظفين بتثبيتها، مما سمح للقراصنة بسرقة بيانات من المستودعات المتضررة، في حين لا يوجد دليل على تأثر بيانات العملاء المستضافة خارج مستودعات غيت هاب الخاصة.

كُتب هذا الملخص من كل التقارير أدناه، لا من تقرير واحد.

ترجمة آلية. التقارير الأصلية بلغتها الأصلية.

كيف جرى تناوله

  1. Ars Technica·
    In stunning display of stupid, secret CISA credentials found in public GitHub repo
  2. Hacker News·
    GitHub is investigating unauthorized access to their internal repositories
  3. TechMeme·
    GitHub says it's investigating "unauthorized access" to its internal repositories, and there's no proof of customer data outside its repositories being impacted (@github)
  4. Hacker News·
    GitHub Compromised
  5. TechMeme·
    GitHub confirms breach of ~3,800 repositories after one of its employees installed a malicious VS Code extension; TeamPCP claimed responsibility for the hack (Sergiu Gatlan/BleepingComputer)
  6. TechCrunch·
    GitHub says hackers stole data from thousands of internal repositories
  7. The Next Web·
    GitHub confirms hackers stole thousands of internal code repositories after employee installed a poisoned VS Code extension