GitHub confirms 3,800 internal repos stolen through poisoned VS Code extension as supply chain worm hits Microsoft’s Python SDK
GitHub确认3800个内部仓库遭投毒VS Code扩展窃取,针对微软Python SDK的供应链蠕虫正在扩散。
GitHub confirmed on May 20 that a poisoned VS Code extension installed on an employee’s device gave attackers access to roughly 3,800 internal reposit…