Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Sympathy to engineers and everyone at github, it's good that they're being open even if findings are limited. I'm sure they will figure out the root cause and will publish results to be a learning experience for everyone else
 help



Microsoft’s GitHub was compromised when a Microsoft developer using Microsoft VSCode installed a rogue extension from Microsoft’s VSCode extension library, which is moderated and hosted by Microsoft.

via: news.ycombinator.com/item?id=48204312


Built with packages hosted on Microslop's NPM

Absolutely disgusting



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: