<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[info on the github breach appears to only be available on xitter 🙄 , I fished it out for you.]]></title><description><![CDATA[<p>info on the github breach appears to only be available on xitter <img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f644.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--face_with_rolling_eyes" style="height:23px;width:auto;vertical-align:middle" title="🙄" alt="🙄" /> , I fished it out for you. </p><p><a href="https://infosec.exchange/tags/github" rel="tag">#<span>github</span></a></p>]]></description><link>https://board.circlewithadot.net/topic/ecf5016c-f7ec-4ede-a8e7-f7711a51361b/info-on-the-github-breach-appears-to-only-be-available-on-xitter-i-fished-it-out-for-you.</link><generator>RSS for Node</generator><lastBuildDate>Sat, 06 Jun 2026 09:01:45 GMT</lastBuildDate><atom:link href="https://board.circlewithadot.net/topic/ecf5016c-f7ec-4ede-a8e7-f7711a51361b.rss" rel="self" type="application/rss+xml"/><pubDate>Wed, 20 May 2026 05:54:29 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to info on the github breach appears to only be available on xitter 🙄 , I fished it out for you. on Wed, 20 May 2026 08:41:03 GMT]]></title><description><![CDATA[<p><span><a href="/user/endrift%40social.treehouse.systems">@<span>endrift</span></a></span> 3800 properly distinct repos doesn’t strike me as an unlikely number if it includes every employee’s minor side project over the last 18 years</p>]]></description><link>https://board.circlewithadot.net/post/https://infosec.exchange/users/0xabad1dea/statuses/116606006951362855</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://infosec.exchange/users/0xabad1dea/statuses/116606006951362855</guid><dc:creator><![CDATA[0xabad1dea@infosec.exchange]]></dc:creator><pubDate>Wed, 20 May 2026 08:41:03 GMT</pubDate></item><item><title><![CDATA[Reply to info on the github breach appears to only be available on xitter 🙄 , I fished it out for you. on Wed, 20 May 2026 08:31:02 GMT]]></title><description><![CDATA[<p><span><a href="/user/ratsnakegames%40mastodon.social">@<span>ratsnakegames</span></a></span> <span><a href="/user/0xabad1dea%40infosec.exchange">@<span>0xabad1dea</span></a></span> Maybe I shouldn't learn coding. Sounds more and more like a well of cursed knowledge these days.</p>]]></description><link>https://board.circlewithadot.net/post/https://gamedev.lgbt/ap/users/116216860616381371/statuses/116605967566009354</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://gamedev.lgbt/ap/users/116216860616381371/statuses/116605967566009354</guid><dc:creator><![CDATA[nephrite@gamedev.lgbt]]></dc:creator><pubDate>Wed, 20 May 2026 08:31:02 GMT</pubDate></item><item><title><![CDATA[Reply to info on the github breach appears to only be available on xitter 🙄 , I fished it out for you. on Wed, 20 May 2026 08:29:42 GMT]]></title><description><![CDATA[<p><span><a href="/user/nephrite%40gamedev.lgbt">@<span>Nephrite</span></a></span> <span><a href="/user/0xabad1dea%40infosec.exchange">@<span>0xabad1dea</span></a></span> which package registry does these days?</p>]]></description><link>https://board.circlewithadot.net/post/https://mastodon.social/users/ratsnakegames/statuses/116605962319968931</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mastodon.social/users/ratsnakegames/statuses/116605962319968931</guid><dc:creator><![CDATA[ratsnakegames@mastodon.social]]></dc:creator><pubDate>Wed, 20 May 2026 08:29:42 GMT</pubDate></item><item><title><![CDATA[Reply to info on the github breach appears to only be available on xitter 🙄 , I fished it out for you. on Wed, 20 May 2026 08:27:56 GMT]]></title><description><![CDATA[<p><span><a href="/user/ratsnakegames%40mastodon.social">@<span>ratsnakegames</span></a></span> <span><a href="/user/0xabad1dea%40infosec.exchange">@<span>0xabad1dea</span></a></span> That sounds pretty bad. Don't they do reviews or anything?</p>]]></description><link>https://board.circlewithadot.net/post/https://gamedev.lgbt/ap/users/116216860616381371/statuses/116605955379019917</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://gamedev.lgbt/ap/users/116216860616381371/statuses/116605955379019917</guid><dc:creator><![CDATA[nephrite@gamedev.lgbt]]></dc:creator><pubDate>Wed, 20 May 2026 08:27:56 GMT</pubDate></item><item><title><![CDATA[Reply to info on the github breach appears to only be available on xitter 🙄 , I fished it out for you. on Wed, 20 May 2026 08:26:33 GMT]]></title><description><![CDATA[<p><span><a href="/user/nephrite%40gamedev.lgbt">@<span>Nephrite</span></a></span> <span><a href="/user/0xabad1dea%40infosec.exchange">@<span>0xabad1dea</span></a></span> 1% is maybe a bit exaggerated but VS Code marketplace is kinda notorious for malware</p>]]></description><link>https://board.circlewithadot.net/post/https://mastodon.social/users/ratsnakegames/statuses/116605949936497094</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mastodon.social/users/ratsnakegames/statuses/116605949936497094</guid><dc:creator><![CDATA[ratsnakegames@mastodon.social]]></dc:creator><pubDate>Wed, 20 May 2026 08:26:33 GMT</pubDate></item><item><title><![CDATA[Reply to info on the github breach appears to only be available on xitter 🙄 , I fished it out for you. on Wed, 20 May 2026 08:24:57 GMT]]></title><description><![CDATA[<p><span><a href="/user/0xabad1dea%40infosec.exchange">@<span>0xabad1dea</span></a></span> I'm honestly not sure if you're joking or if this is literally true.</p>]]></description><link>https://board.circlewithadot.net/post/https://gamedev.lgbt/ap/users/116216860616381371/statuses/116605943622246569</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://gamedev.lgbt/ap/users/116216860616381371/statuses/116605943622246569</guid><dc:creator><![CDATA[nephrite@gamedev.lgbt]]></dc:creator><pubDate>Wed, 20 May 2026 08:24:57 GMT</pubDate></item><item><title><![CDATA[Reply to info on the github breach appears to only be available on xitter 🙄 , I fished it out for you. on Wed, 20 May 2026 08:21:35 GMT]]></title><description><![CDATA[<p><span><a href="/user/david_chisnall%40infosec.exchange">@<span>david_chisnall</span></a></span> <span><a href="/user/0xabad1dea%40infosec.exchange">@<span>0xabad1dea</span></a></span> I could not ever have thought that to be a problem! Who has ever heard of it being problematic to download random code from the Internet and run it with full privileges on your computer? This realization is a breakthrough in infosec. Someone deserves a Nobel price for this. And a Turing award.</p><p>(<a href="https://toot.liw.fi/tags/sarcasm" rel="tag">#<span>sarcasm</span></a> just in case)</p>]]></description><link>https://board.circlewithadot.net/post/https://toot.liw.fi/users/liw/statuses/116605930394320495</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://toot.liw.fi/users/liw/statuses/116605930394320495</guid><dc:creator><![CDATA[liw@toot.liw.fi]]></dc:creator><pubDate>Wed, 20 May 2026 08:21:35 GMT</pubDate></item><item><title><![CDATA[Reply to info on the github breach appears to only be available on xitter 🙄 , I fished it out for you. on Wed, 20 May 2026 08:15:17 GMT]]></title><description><![CDATA[<p><span><a href="/user/soviut%40hachyderm.io">@<span>soviut</span></a></span> <span><a href="/user/0xabad1dea%40infosec.exchange">@<span>0xabad1dea</span></a></span> Checkmarkx (appsec company!) recently couldn't kick out the attackers for a month, so one of their recommended action to clients was to disable auto update of the Checkmarkx extension in VSCode (which was poisoned)</p>]]></description><link>https://board.circlewithadot.net/post/https://infosec.exchange/users/caspicat/statuses/116605905614455378</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://infosec.exchange/users/caspicat/statuses/116605905614455378</guid><dc:creator><![CDATA[caspicat@infosec.exchange]]></dc:creator><pubDate>Wed, 20 May 2026 08:15:17 GMT</pubDate></item><item><title><![CDATA[Reply to info on the github breach appears to only be available on xitter 🙄 , I fished it out for you. on Wed, 20 May 2026 08:07:33 GMT]]></title><description><![CDATA[<p><span><a href="/user/phil%40fed.bajsicki.com" rel="nofollow noopener">@<span>phil</span></a></span> <span><a href="/user/0xabad1dea%40infosec.exchange">@<span>0xabad1dea</span></a></span> </p><p>I’ve thought about this for a while and I think the difference is the <em>marketplace</em>. I use a bunch of vim extensions but vim and emacs don’t have a built-in thing that advertises extensions to me. There’s no ‘click here to install…’ button with flashy marketing. There’s no built-in concept of ‘recommended extensions’. </p><p>When I install an extension in vim, it’s almost always because someone looks over my shoulder and says ‘wow, I forgot how bad vim was without [my favourite extension]’ and I try it and decide it actually does make life nicer. When people install extensions in VS Code it’s because they’ve been trained that there’s always an extension in the store and it’s the top result for their search. And that gives people a big incentive to put malicious extensions in the store.</p>]]></description><link>https://board.circlewithadot.net/post/https://infosec.exchange/users/david_chisnall/statuses/116605875252454254</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://infosec.exchange/users/david_chisnall/statuses/116605875252454254</guid><dc:creator><![CDATA[david_chisnall@infosec.exchange]]></dc:creator><pubDate>Wed, 20 May 2026 08:07:33 GMT</pubDate></item><item><title><![CDATA[Reply to info on the github breach appears to only be available on xitter 🙄 , I fished it out for you. on Wed, 20 May 2026 08:00:23 GMT]]></title><description><![CDATA[<p><span><a href="/user/0xabad1dea%40infosec.exchange">@<span>0xabad1dea</span></a></span> Or the extension was legitimate and got compromised (their use of the term "poisoned" makes me think that).</p><p>Supply chain attacks are on the rise; the best course of action is to admit when they happen, learn from them, and use those learnings to prevent it in the future.</p>]]></description><link>https://board.circlewithadot.net/post/https://hachyderm.io/users/soviut/statuses/116605847069927424</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://hachyderm.io/users/soviut/statuses/116605847069927424</guid><dc:creator><![CDATA[soviut@hachyderm.io]]></dc:creator><pubDate>Wed, 20 May 2026 08:00:23 GMT</pubDate></item><item><title><![CDATA[Reply to info on the github breach appears to only be available on xitter 🙄 , I fished it out for you. on Wed, 20 May 2026 07:53:01 GMT]]></title><description><![CDATA[<p><span><a href="/user/benoitb%40framapiaf.org">@<span>benoitb</span></a></span> every large organization, knowingly or unintentionally (usually both), has internal secrets embedded in their internal codebase. so yeah</p>]]></description><link>https://board.circlewithadot.net/post/https://infosec.exchange/users/0xabad1dea/statuses/116605818047338862</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://infosec.exchange/users/0xabad1dea/statuses/116605818047338862</guid><dc:creator><![CDATA[0xabad1dea@infosec.exchange]]></dc:creator><pubDate>Wed, 20 May 2026 07:53:01 GMT</pubDate></item><item><title><![CDATA[Reply to info on the github breach appears to only be available on xitter 🙄 , I fished it out for you. on Wed, 20 May 2026 07:51:35 GMT]]></title><description><![CDATA[<p><span><a href="/user/0xabad1dea%40infosec.exchange">@<span>0xabad1dea</span></a></span> </p><p>They wrote:</p><p>&gt; "2/ Our current assessment is that the activity involved exfiltration of GitHub-internal repositories only. […]<br />3/ We moved quickly to reduce risk. Critical secrets were rotated yesterday and overnight with the highest-impact credentials prioritized first."</p><p>Do they really put "Critical secrets" in their "GitHub-internal repositories" !?</p>]]></description><link>https://board.circlewithadot.net/post/https://framapiaf.org/users/benoitb/statuses/116605812419902402</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://framapiaf.org/users/benoitb/statuses/116605812419902402</guid><dc:creator><![CDATA[benoitb@framapiaf.org]]></dc:creator><pubDate>Wed, 20 May 2026 07:51:35 GMT</pubDate></item><item><title><![CDATA[Reply to info on the github breach appears to only be available on xitter 🙄 , I fished it out for you. on Wed, 20 May 2026 07:46:06 GMT]]></title><description><![CDATA[<p>gonna gently push back that there's no reason (according to github's version of the story) to associate this with AI or with spectacular incompetence on the part of the employee; the issue is that industry standard, extremely widely used text editor Visual Studio Code has a big button that says "click here to add useful functionality to do your job" that has a 1% chance of installing ransomware</p>]]></description><link>https://board.circlewithadot.net/post/https://infosec.exchange/users/0xabad1dea/statuses/116605790909436322</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://infosec.exchange/users/0xabad1dea/statuses/116605790909436322</guid><dc:creator><![CDATA[0xabad1dea@infosec.exchange]]></dc:creator><pubDate>Wed, 20 May 2026 07:46:06 GMT</pubDate></item><item><title><![CDATA[Reply to info on the github breach appears to only be available on xitter 🙄 , I fished it out for you. on Wed, 20 May 2026 07:44:30 GMT]]></title><description><![CDATA[<p><a href="/user/david_chisnall%40infosec.exchange">@david_chisnall@infosec.exchange</a> <a href="/user/0xabad1dea%40infosec.exchange">@0xabad1dea@infosec.exchange</a><span> <br />While yes, I think it's more about the </span><i>perception</i><span> of extensions being secure. Emacs has the same security model, but you don't see Big News<img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/2122.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--tm" style="height:23px;width:auto;vertical-align:middle" title="™" alt="™" /> about it. <br /><br />Granted part of this is that Emacs itself requires a certain level of understanding to use so it filters out users who Just Install Things<img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/00a9.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--copyright" style="height:23px;width:auto;vertical-align:middle" title="©" alt="©" /> but still.</span></p>]]></description><link>https://board.circlewithadot.net/post/https://fed.bajsicki.com/notes/amhblswa9y</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://fed.bajsicki.com/notes/amhblswa9y</guid><dc:creator><![CDATA[phil@fed.bajsicki.com]]></dc:creator><pubDate>Wed, 20 May 2026 07:44:30 GMT</pubDate></item><item><title><![CDATA[Reply to info on the github breach appears to only be available on xitter 🙄 , I fished it out for you. on Wed, 20 May 2026 07:34:51 GMT]]></title><description><![CDATA[<p><span><a href="/user/0xabad1dea%40infosec.exchange">@<span>0xabad1dea</span></a></span> (horselegged/sanserif Swastikas...)</p>]]></description><link>https://board.circlewithadot.net/post/https://infosec.exchange/users/muddle/statuses/116605746645552340</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://infosec.exchange/users/muddle/statuses/116605746645552340</guid><dc:creator><![CDATA[muddle@infosec.exchange]]></dc:creator><pubDate>Wed, 20 May 2026 07:34:51 GMT</pubDate></item><item><title><![CDATA[Reply to info on the github breach appears to only be available on xitter 🙄 , I fished it out for you. on Wed, 20 May 2026 07:33:36 GMT]]></title><description><![CDATA[<p><span><a href="/user/0xabad1dea%40infosec.exchange">@<span>0xabad1dea</span></a></span> Huh. It’s almost as if an editor with a marketplace for extensions and zero thought to the security model (beyond ‘extensions have complete access to your computer’) might not have been the best idea after all.</p>]]></description><link>https://board.circlewithadot.net/post/https://infosec.exchange/users/david_chisnall/statuses/116605741708333460</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://infosec.exchange/users/david_chisnall/statuses/116605741708333460</guid><dc:creator><![CDATA[david_chisnall@infosec.exchange]]></dc:creator><pubDate>Wed, 20 May 2026 07:33:36 GMT</pubDate></item><item><title><![CDATA[Reply to info on the github breach appears to only be available on xitter 🙄 , I fished it out for you. on Wed, 20 May 2026 07:24:05 GMT]]></title><description><![CDATA[<p><span><a href="/user/0xabad1dea%40infosec.exchange">@<span>0xabad1dea</span></a></span> while this is not directly related to AI as far as reported, I can't help but imagine that hiring people who buy into the AI idiocy is a surefire way to get your entire organization packed full of imbeciles likely to make this fuck up one day or another</p>]]></description><link>https://board.circlewithadot.net/post/https://mastodon.gal/users/elrohir/statuses/116605704282308583</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mastodon.gal/users/elrohir/statuses/116605704282308583</guid><dc:creator><![CDATA[elrohir@mastodon.gal]]></dc:creator><pubDate>Wed, 20 May 2026 07:24:05 GMT</pubDate></item><item><title><![CDATA[Reply to info on the github breach appears to only be available on xitter 🙄 , I fished it out for you. on Wed, 20 May 2026 07:22:23 GMT]]></title><description><![CDATA[<p><span><a href="/user/tati%40eldritch.cafe">@<span>tati</span></a></span> <span><a href="/user/0xabad1dea%40infosec.exchange">@<span>0xabad1dea</span></a></span> “we don’t think we can get away with denying it”</p>]]></description><link>https://board.circlewithadot.net/post/https://tech.lgbt/users/crowbriarhexe/statuses/116605697589832411</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://tech.lgbt/users/crowbriarhexe/statuses/116605697589832411</guid><dc:creator><![CDATA[crowbriarhexe@tech.lgbt]]></dc:creator><pubDate>Wed, 20 May 2026 07:22:23 GMT</pubDate></item><item><title><![CDATA[Reply to info on the github breach appears to only be available on xitter 🙄 , I fished it out for you. on Wed, 20 May 2026 06:52:38 GMT]]></title><description><![CDATA[<p><span><a href="/user/0xabad1dea%40infosec.exchange">@<span>0xabad1dea</span></a></span> My favorite take so far: "holy shit, how did the attackers find a large enough uptime window to get in?"</p>]]></description><link>https://board.circlewithadot.net/post/https://m29.us/users/ryan/statuses/116605580611130434</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://m29.us/users/ryan/statuses/116605580611130434</guid><dc:creator><![CDATA[ryan@m29.us]]></dc:creator><pubDate>Wed, 20 May 2026 06:52:38 GMT</pubDate></item><item><title><![CDATA[Reply to info on the github breach appears to only be available on xitter 🙄 , I fished it out for you. on Wed, 20 May 2026 06:38:41 GMT]]></title><description><![CDATA[<p><span><a href="/user/tati%40eldritch.cafe">@<span>tati</span></a></span> <span><a href="/user/0xabad1dea%40infosec.exchange">@<span>0xabad1dea</span></a></span> I don't know how someone decides to use the phrase "directionally consistent". Maybe they took too many drugs, or not enough. Anyway, something went wrong, for sure.</p>]]></description><link>https://board.circlewithadot.net/post/https://mastodon.social/users/tomhead/statuses/116605525777170361</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mastodon.social/users/tomhead/statuses/116605525777170361</guid><dc:creator><![CDATA[tomhead@mastodon.social]]></dc:creator><pubDate>Wed, 20 May 2026 06:38:41 GMT</pubDate></item><item><title><![CDATA[Reply to info on the github breach appears to only be available on xitter 🙄 , I fished it out for you. on Wed, 20 May 2026 06:36:18 GMT]]></title><description><![CDATA[<p><span><a href="/user/0xabad1dea%40infosec.exchange">@<span>0xabad1dea</span></a></span> maybe they'll build a status page some day. they're still a scrappy startup though, they probably have higher priorities like making investor pitch decks.</p>]]></description><link>https://board.circlewithadot.net/post/https://hachyderm.io/users/groxx/statuses/116605516397571411</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://hachyderm.io/users/groxx/statuses/116605516397571411</guid><dc:creator><![CDATA[groxx@hachyderm.io]]></dc:creator><pubDate>Wed, 20 May 2026 06:36:18 GMT</pubDate></item><item><title><![CDATA[Reply to info on the github breach appears to only be available on xitter 🙄 , I fished it out for you. on Wed, 20 May 2026 06:26:41 GMT]]></title><description><![CDATA[<p><span><a href="/user/gerhardd%40olching.social">@<span>GerhardD</span></a></span> <span><a href="/user/0xabad1dea%40infosec.exchange">@<span>0xabad1dea</span></a></span> Glad to have left Github behind when it was about to be consumed by Viboslop.</p><p>(Yeah, I know, it’s still a supply chain attack free for all fest causing much hurt.)</p>]]></description><link>https://board.circlewithadot.net/post/https://mastodon.nl/users/js/statuses/116605478626872602</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mastodon.nl/users/js/statuses/116605478626872602</guid><dc:creator><![CDATA[js@mastodon.nl]]></dc:creator><pubDate>Wed, 20 May 2026 06:26:41 GMT</pubDate></item><item><title><![CDATA[Reply to info on the github breach appears to only be available on xitter 🙄 , I fished it out for you. on Wed, 20 May 2026 06:25:16 GMT]]></title><description><![CDATA[<p><span><a href="/user/0xabad1dea%40infosec.exchange">@<span>0xabad1dea</span></a></span> Glad to have deleted my GitHub Account when they introduced "AI". <a href="https://olching.social/tags/github" rel="tag">#<span>github</span></a></p>]]></description><link>https://board.circlewithadot.net/post/https://olching.social/users/GerhardD/statuses/116605473038799479</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://olching.social/users/GerhardD/statuses/116605473038799479</guid><dc:creator><![CDATA[gerhardd@olching.social]]></dc:creator><pubDate>Wed, 20 May 2026 06:25:16 GMT</pubDate></item><item><title><![CDATA[Reply to info on the github breach appears to only be available on xitter 🙄 , I fished it out for you. on Wed, 20 May 2026 06:22:27 GMT]]></title><description><![CDATA[<p><span><a href="/user/0xabad1dea%40infosec.exchange">@<span>0xabad1dea</span></a></span> Happy GitHub Breach Day! Enjoy this one. Starting next week we will go back to just calling it Wednesday again.</p>]]></description><link>https://board.circlewithadot.net/post/https://mastodon.social/users/tkissing/statuses/116605461938782522</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mastodon.social/users/tkissing/statuses/116605461938782522</guid><dc:creator><![CDATA[tkissing@mastodon.social]]></dc:creator><pubDate>Wed, 20 May 2026 06:22:27 GMT</pubDate></item></channel></rss>