Dozens of cryptographically verified open source packages from Microsoft were compromised late last week to add advanced credential-stealing code that […]
Tag: GitHub
AI costs how much? GitHub Copilot users react to new usage-based pricing system.
Skip to content Some report burning through their whole monthly “AI credit” allotment in a single day. Why did we […]
A hacker group is poisoning open source code at an unprecedented scale
GitHub is just the latest victim of TeamPCP, a gang that has carried out a spree of software supply chain […]
In stunning display of stupid, secret CISA credentials found in public GitHub repo
Security researcher Brian Krebs brings us the news that America’s Cybersecurity & Infrastructure Agency (CISA) has had a large store […]
GitHub will start charging Copilot users based on their actual AI usage
GitHub has announced that it will be shifting to a usage-based billing model for its GitHub Copilot AI service starting […]
Open source package with 1 million monthly downloads stole user credentials
The developers are urging all developers who installed version 0.23.3 to take the following steps immediately: 1. Check your installed […]
Anthropic says its leak-focused DMCA effort unintentionally hit legit GitHub forks
An Anthropic-backed DMCA effort to remove its recently leaked Claude Code client source code from GitHub this week resulted in […]
Entire Claude Code CLI source code leaks thanks to exposed map file
And Gabriel Anhaia took a bird’s eye view, explaining how many lines of code make up some of the components—around […]
Widely used Trivy scanner compromised in ongoing supply-chain attack
Hackers have compromised virtually all versions of Aqua Security’s widely used Trivy vulnerability scanner in an ongoing supply chain attack […]
The Linux Foundation secures $12.5 million to boost open source security
The Linux Foundation has announced that it has secured $12.5 million in funding from Anthropic, AWS, GitHub, Google, Google DeepMind, […]
