GitHub suffered a widespread global outage that disrupted major platform components including the website, API, Pull Requests, Issues, Actions, Webhooks, and Copilot, leaving developers and enterprise customers unable to reliably access repositories and collaboration features. GitHub reported roughly 20% error rates across web and API traffic, while archive downloads and raw repository content downloads were failing at about 50%, indicating broad impact across both interactive use and automated consumption of code.
The incident also affected GitHub Enterprise Cloud identity services, including SAML, OIDC, SCIM provisioning, and Team Sync, causing single sign-on and account-management problems for organizations that depend on GitHub for source control, CI/CD, and automation. GitHub said engineers were investigating the disruption, applying mitigations, and monitoring for improvement, but had not disclosed a root cause, estimated time to resolution, or any confirmed connection to a cyberattack at the time of reporting.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
14 events from the most recent confirmed update back to the earliest known activity.
At approximately 15:21 UTC on August 17, 2026, GitHub reported degraded performance affecting Git Operations during the ongoing platform disruption.
At approximately 15:10 UTC on August 17, 2026, GitHub reported degraded performance affecting GitHub Pages as the outage spread to additional services.
At approximately 15:01 UTC on August 17, 2026, GitHub escalated API Requests from degraded performance to degraded availability during the continuing incident.
At 14:58 UTC on August 17, 2026, GitHub said about 20% of web and API traffic was still returning errors and that engineers were applying mitigations while monitoring for improvement.
At 14:58 UTC on August 17, 2026, GitHub disclosed that SAML, OIDC, SCIM, and Team Sync were affected, extending the outage to enterprise identity and organization-management features.
At about 14:31 UTC on August 17, 2026, GitHub confirmed that Copilot was also experiencing degraded availability during the broader outage.
At 14:24 UTC on August 17, 2026, GitHub said web and API traffic were experiencing roughly 20% error rates, while archive and raw repository downloads were failing at about 50%.
At approximately 13:58 UTC on August 17, 2026, GitHub reported Issues as degraded as the incident expanded across core collaboration features.
Around 13:42 UTC on August 17, 2026, GitHub added Pull Requests to the list of affected components during the ongoing outage.
At about 13:40 UTC on August 17, 2026, GitHub said it was investigating performance problems affecting some services as a broad outage impacted web and API traffic.
Downdetector reported a spike in user complaints near 13:30 UTC on August 17, 2026, as a major GitHub service disruption began affecting users worldwide.
In April 2026, GitHub introduced a more transparent status-reporting framework with granular severity tiers and 90-day uptime metrics for individual services.
GitHub published a postmortem for the August 17, 2026 outage, saying the disruption lasted nearly eight hours and began when traffic hit a new peak that a critical Central US infrastructure component failed to scale for. The company said the resulting capacity pressure triggered authentication failures and outlined immediate mitigations including retry limits, retry budgets, and adjusted service-to-service timeouts.
GitHub disclosed that the August 17 outage was caused by a misconfigured autoscaling policy affecting an Istio sidecar pod in its Central US region, which led to network saturation and cascading failures. The company also outlined corrective actions including fixing autoscaling policies, auditing Istio limits, and reviewing retry and failover behavior.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
8 references tracked. Mallory keeps watching after this page renders.
thenewstack.io
Open sourceitpro.com
Open sourceinfoworld.com
Open sourcecybersecuritynews.com
Open sourcecryptika.com
Open sourcethecybersecguru.com
Open sourcebleepingcomputer.com
Open sourcegithubstatus.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.