Skip to main content
← All Articles

Tag

#GitHub

33 articles

Advertisement

GitHub Data Breach: Analysis of TeamPCP Internal Repository Theft
HIGH
Data Breach

GitHub Data Breach: Analysis of TeamPCP Internal Repository Theft

GitHub confirms the theft of 4,000 internal repositories by threat actor TeamPCP. Learn the technical implications and defense strategies for security teams.

Runtime Rebel Intel
3 min read·May 21, 2026
SU
HIGH
Supply Chain

GitHub Repository Breach Linked to TanStack Supply Chain Attack

GitHub confirms the breach of 3,800 internal repositories via a compromised VS Code extension linked to the TanStack npm supply chain attack.

Runtime Rebel Intel
4 min read·May 21, 2026
GitHub Internal Repositories Breached via Nx Console VS Code Extension
HIGH
Supply Chain

GitHub Internal Repositories Breached via Nx Console VS Code Extension

GitHub confirms internal repository breach after an employee device was compromised by a poisoned Nx Console VS Code extension in a supply chain attack.

Runtime Rebel Intel
3 min read·May 21, 2026
SU
HIGH
Supply Chain

GitHub Repository Breach: 3,800 Repos Accessed via VS Code Extension

GitHub confirms a security incident where a malicious VS Code extension compromised an employee account, leading to the unauthorized access of 3,800 repos.

Runtime Rebel Intel
4 min read·May 20, 2026
GitHub Investigates Claimed TeamPCP Breach of 4,000 Internal Repos
HIGH
Data Breach

GitHub Investigates Claimed TeamPCP Breach of 4,000 Internal Repos

GitHub is investigating a potential breach of 4,000 internal repositories claimed by TeamPCP, highlighting the risk of source code leaks for enterprises.

Runtime Rebel Intel
4 min read·May 20, 2026
CISA GitHub Repo Exposes Secrets & Credentials in Public View
HIGH
Cloud Security

CISA GitHub Repo Exposes Secrets & Credentials in Public View

CISA inadvertently exposed sensitive secrets and credentials within a publicly accessible GitHub repository. This incident highlights critical cloud security

Runtime Rebel Intel
4 min read·May 19, 2026
CL
CRITICAL
Cloud Security

CISA Contractor Leaked AWS GovCloud Keys on GitHub: Critical Exposure

A CISA contractor publicly exposed highly privileged AWS GovCloud and internal system credentials on GitHub, detailing CISA's software development. This leak poses a

Runtime Rebel Intel
5 min read·May 19, 2026
SU
HIGH
Supply Chain

Grafana GitHub Token Compromise: Codebase Stolen via PAT

Grafana Labs reports a source code breach after attackers leveraged a stolen GitHub Personal Access Token. Analysis of the impact and mitigation steps.

Runtime Rebel Intel
3 min read·May 18, 2026
GitHub High-Severity Bug Discovered via AI Reverse Engineering
HIGH
Vulnerabilities

GitHub High-Severity Bug Discovered via AI Reverse Engineering

Wiz utilized AI reverse-engineering to uncover a high-severity vulnerability within GitHub, demonstrating advanced discovery methods for complex bugs.

Runtime Rebel Intel
4 min read·Apr 29, 2026
SU
HIGH
Supply Chain

Checkmarx Supply Chain Attack: GitHub Data Exfiltration Confirmed

Checkmarx confirms data exfiltration from its GitHub environment following a malicious code publication. Learn about the TTPs and mitigation strategies.

Runtime Rebel Intel
4 min read·Apr 29, 2026
CVE-2026-3854: GitHub RCE via Malicious Git Push Command
HIGH
Vulnerabilities

CVE-2026-3854: GitHub RCE via Malicious Git Push Command

A critical command injection vulnerability, CVE-2026-3854, allows authenticated users to achieve RCE on GitHub instances via a single git push operation.

Runtime Rebel Intel
3 min read·Apr 28, 2026
Checkmarx GitHub Repository Data Leaked Following Supply Chain Attack
HIGH
Supply Chain

Checkmarx GitHub Repository Data Leaked Following Supply Chain Attack

Checkmarx confirms internal GitHub repository data was published on the dark web following a March 2026 supply chain incident. Learn the impact and TTPs.

Runtime Rebel Intel
3 min read·Apr 27, 2026