InfoSec News Nuggets 05/20/2026
GitHub Investigates Internal Repositories Breach Claimed by TeamPCP GitHub confirmed that roughly 3,800 internal repositories were accessed after an employee installed a malicious VS Code extension, in what appears to be a follow-on from the broader developer tooling supply chain attack activity seen this week. The company says it has no evidence that customer repositories, organizations, or enterprises were affected outside GitHub's own internal environment, but is continuing to monitor for follow-on activity. Developer tooling…