GitHub confirmed that an attacker accessed internal repositories after a malicious Visual Studio Code extension was installed on an employee device, leading to the exfiltration of roughly 3,800 GitHub-internal repositories. GitHub said it detected and contained the intrusion, removed the malicious extension version, and isolated the affected endpoint. Independent analysis of a leaked file list reportedly found 3,874 unique .tar.gz archive names, broadly matching GitHub’s estimate of the stolen data.
The exposed repositories reportedly include projects tied to security tooling, identity systems, CI/CD, infrastructure-as-code, GitHub Actions, Terraform, certificates, and Copilot-related work, increasing the risk of follow-on supply-chain abuse and targeted social engineering. The threat actor, using the alias TeamPCP, is said to be offering the dataset for sale on an underground forum for more than $50,000, raising concerns that internal code and operational details could be weaponized against GitHub and its customers.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
5 events from the most recent confirmed update back to the earliest known activity.
The threat actor using the alias TeamPCP was reportedly attempting to sell the stolen GitHub dataset on an underground forum for more than $50,000. The report links this sale attempt to the previously disclosed repository compromise.
GitHub assessed that approximately 3,800 internal repositories were exfiltrated in the compromise. An analyzed leaked file list reportedly contained 3,874 unique .tar.gz archive names, broadly matching GitHub’s estimate.
GitHub confirmed a security incident in which an attacker accessed internal repositories via a poisoned Visual Studio Code extension installed on an employee device. GitHub said it detected and contained the activity, removed the malicious extension version, and isolated the affected endpoint.
A separate report documents a cloud infrastructure extortion scenario involving compromised or exposed buckets being ransomed. The article focuses on how the attack unfolded and the attacker’s abuse of cloud storage resources.
A report describes an S3 bucket squatting incident in which a previously deleted bucket name was re-registered by another party, allowing control over requests to that bucket name. The write-up documents the security implications of bucket-name reuse after deletion.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
8 references tracked. Mallory keeps watching after this page renders.
docs.aws.amazon.com
Open sourcedocs.aws.amazon.com
Open sourcemedium.com
Open source8a03e7a6.c-b-io.pages.dev
Open source8a03e7a6.c-b-io.pages.dev
Open sourcedocs.aws.amazon.com
Open sourcedocs.aws.amazon.com
Open sourcedocs.aws.amazon.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.