BTC $63,975.87 -2.10%
ETH $1,858.11 -1.18%
BNB $564.52 -0.58%
XRP $1.09 -1.77%
SOL $73.93 -2.49%
TRX $0.3293 -0.10%
DOGE $0.0693 +0.20%
ADA $0.1630 -2.12%
BCH $210.66 -0.34%
LINK $8.32 -1.53%
HYPE $57.18 -2.59%
AAVE $91.56 -4.33%
SUI $0.7107 -4.46%
XLM $0.1773 -3.90%
ZEC $478.11 -6.07%
BTC $63,975.87 -2.10%
ETH $1,858.11 -1.18%
BNB $564.52 -0.58%
XRP $1.09 -1.77%
SOL $73.93 -2.49%
TRX $0.3293 -0.10%
DOGE $0.0693 +0.20%
ADA $0.1630 -2.12%
BCH $210.66 -0.34%
LINK $8.32 -1.53%
HYPE $57.18 -2.59%
AAVE $91.56 -4.33%
SUI $0.7107 -4.46%
XLM $0.1773 -3.90%
ZEC $478.11 -6.07%

omise

All
Article
Flash

GitHub updates security incident investigation: An employee's device was compromised, involving a contaminated VS Code extension

GitHub has updated the details of the investigation into the unauthorized access incident of its internal repositories: GitHub detected and contained an incident yesterday involving an employee's device being compromised, which involved a maliciously implanted VS Code extension. GitHub removed the malicious extension, isolated the affected terminals, and immediately initiated an incident response. Current assessments show that only GitHub's internal repositories experienced data exfiltration, and the approximately 3,800 repositories claimed by the attackers are roughly consistent with the investigation results. GitHub has prioritized rotating critical credentials, is analyzing logs, verifying credential rotations, and monitoring subsequent activities, with a complete report to be released after the investigation is concluded.Additionally, Slow Mist's Chief Information Security Officer 23pds commented on this incident, stating: "By analyzing leaks from cybercrime forums, hackers may have used Anthropic's Mythos security AI to precisely breach GitHub's defenses and steal information from about 4,000 core internal repositories: including the source code for Copilot, the algorithms for CodeQL, the Actions runtime, and the entire billing system. Further analysis of this code could lead to subsequent attacks, having a profound security impact on the integration of the open-source community."

Syndicate Labs suffered a private key leak attack, approximately 18.5 million SYND were transferred, and they promised full compensation to users

According to official news, Syndicate Labs disclosed that its cross-chain bridge contract was maliciously upgraded on two chains due to a private key leak. The attacker transferred and sold approximately 18.5 million SYND (about $330,000) and around $50,000 worth of user tokens. The incident only affected specific chains, while others were not impacted.Syndicate Labs stated that this attack involved multi-stage reconnaissance, infrastructure mapping, and careful execution, demonstrating a high level of technical complexity, and ruled out the involvement of internal personnel. The root cause was that the private key was stored in a password management tool without an additional layer of encryption, and the upgrade process did not utilize multi-signature or hardware signature mechanisms, nor did it have early warning and circuit breaker measures for contract upgrades.Syndicate Labs announced that it will fully compensate all affected users, including returning 18.5 million SYND and providing additional compensation, while also fully compensating affected application chain clients. The company has initiated security upgrade measures, including strengthening private key encryption, tightening access permissions, and plans to introduce hardware or multi-signature mechanisms and upgrade path monitoring to prevent similar incidents from occurring again.
app_icon
ChainCatcher Building the Web3 world with innovations.