
GitHub just confirmed a breach.
Not via a zero-day. Not via a phishing email.
A developer installed a VS Code extension. It was poisoned.
That's all it took to compromise one of the world's largest code platforms used by 100M+ developers.
Your tools are your attack surface. 🔐
#CyberSecurity #GitHub #SupplyChain #VSCode #InfoSec #DevSecurity
English




