BreachFeed
company

GitHub

Tracked by 0 people

Track GitHub

Used by

Organizations reported to depend on GitHub — exposure candidates when GitHub has an incident.

Incident history

CSO Online·
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmu74uev804sahmu2vfdrg3i6

A zero-click RCE flaw in AI coding agents could have exposed enterprise systems

Popular AI coding agents such as OpenAI’s Codex, Anthropic’s Claude Code, Google’s Gemini CLI, and Microsoft-owned GitHub Copilot were vulnerable to a zero-click attack that enabled attackers to execute malicious code, even without developer interaction, by swapping a trusted plugin from an online marketplace for a malicious one, potentially giving them a foothold in enterprise development environments. Researchers at cybersecurity startup AIR found and reported the flaw, which they are calling…

The Hacker News·
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmu74uf1m04suhmu28y44r6f1

Transparent Tribe Deploys New Rust Backdoor Using Private GitHub Repositories for C2

The Pakistan-aligned threat group tracked as Transparent Tribe (aka APT36 and Earth Karkaddan) has been attributed to a fresh set of cyber attacks targeting government and defense entities in India and Afghanistan. The attacks, per Zscaler ThreatLabz, involve the use of previously undocumented tools called RUSTYSHADE, RUSTYMOVE, PSNATCH, and BASHNATCH. The activity has been codenamed Operation

The Hacker News·
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmu70t32o00vwhnu2wnyls9x9

Plugin4Shell Lets Repository Owners Swap Pinned Plugin Code Across Four AI Coding Agents

A flaw in four widely used AI coding agents lets someone who controls a plugin's code repository swap the plugin an agent installs for a malicious one, even when the agent locked that plugin to a specific reviewed version, security firm Air Security said on Thursday. The firm said Anthropic has patched the flaw in Claude Code 2.1.179 and OpenAI in Codex 0.146.0, that GitHub Copilot has no

Data Breach Today·2 sources
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmtx9h7gp0bskhpu2ekdcyhu9

Novo Nordisk Data Breach Tied to Stolen GitHub Access Tokens

Cyber Extortion Group Continues to Target Exposed Cloud-Based Data Over Endpoints Cyber extortion group FulcrumSec continues to find hardcoded credentials in public-facing IT infrastructure and exploit them as part of what it's dubbed a "Hardcoded Horrorshow" that counts Ozempic maker Novo Nordisk among its victims. Here are defenses organizations need to put in place now.

BankInfoSecurity.com·2 sources
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmtx9h76y0bs0hpu22sv0vvhz

Novo Nordisk Data Breach Tied to Stolen GitHub Access Tokens

Cyber Extortion Group Continues to Target Exposed Cloud-Based Data Over Endpoints Cyber extortion group FulcrumSec continues to find hardcoded credentials in public-facing IT infrastructure and exploit them as part of what it's dubbed a "Hardcoded Horrorshow" that counts Ozempic maker Novo Nordisk among its victims. Here are defenses organizations need to put in place now.

Cyber Security News·
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmtvjcu001a61hmu2fwn8rdya

Hackers Can Turn AI Workflows Into Privileged Data-Stealing Proxies Without Jailbreaking Models

Enterprise AI workflows can be vulnerable to misuse that exposes sensitive information without prompt injection, account compromise, or jailbreaking a large language model. This vulnerability, termed Workflow Identity Hijacking, exploits authorization gaps between external requesters and the privileged identities used by AI automation. Workflows linked to public-facing email inboxes, web forms, GitHub issues, shared documents, […] The post Hackers Can Turn AI Workflows Into Privileged…

Cyber Security News·
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmtujpe6s05elhmu2ay2z4ibd

MapLibre Vulnerability Exposes 2.7M Users to Zero-Click Attacks

A critical cross-site scripting vulnerability in the widely used MapLibre GL JS library could expose applications and an estimated 2.7 million users to zero-click attacks. The flaw, tracked as CVE-2026-85061 and GitHub Security Advisory GHSA-jrc7-96c5-q579, affects maplibre-gl versions 6.4.0 and earlier. MapLibre GL JS is an open-source JavaScript mapping library used by websites and web […] The post MapLibre Vulnerability Exposes 2.7M Users to Zero-Click Attacks appeared first on Cyber…

Community chatter

Reddit and X posts mentioning GitHub — unverified discussion, often ahead of the press.