GitHub Lost 3,800 Internal Repos to a VS Code Extension. The DDQ Row Your Code-Hosting Vendor Has Not Answered Is About Their Developer Endpoints, Not Yours.
technical
7 min read

GitHub Lost 3,800 Internal Repos to a VS Code Extension. The DDQ Row Your Code-Hosting Vendor Has Not Answered Is About Their Developer Endpoints, Not Yours.

GitHub fell to the same VS Code Marketplace channel that hit Nx Console two days earlier, and one employee endpoint was sufficient to exfiltrate 3,800 internal repositories. Procurement now needs a fourth-party row about the vendor's own engineering fleet.

Harper Foley

Harper Foley

General Manager at Tribe AI. Former Navy EOD.

Share