GitHub just confirmed 3,800 repos got breached through one malicious VSCode extension. Here's the 5-minute audit every vibe coder should run tonight — before the next one ships.

GitHub blamed the latest in a growing list of hacks claimed by TeamPCP on a poisoned VS Code extension.

A GitHub employee has unwittingly allowed 3,800 internal repositories to be breached after a device compromise with a poisoned VS Code extension.