GitHub has confirmed a serious internal security incident involving around 3,800 of its own code repositories. According to the company, the breach began after an employee's device was compromised through a malicious Visual Studio Code extension, allowing attackers to steal credentials and gain access to internal GitHub repositories.

