Cursor's Origin Aims at GitHub's Woes
AI startup Cursor, now part of SpaceX, launches Origin, a code-hosting platform that integrates with GitHub amid user frustration over outages.
16 results for “github”
AI startup Cursor, now part of SpaceX, launches Origin, a code-hosting platform that integrates with GitHub amid user frustration over outages.
A GitHub Actions workflow flaw in Snowflake's connector repo allowed crafted issues to execute commands with exposed Jira credentials.
GitHub confirms widespread outage affecting core services, with error rates reaching 50% for downloads.
Mozilla replaced the GPG key for Firefox and Thunderbird after an unencrypted copy leaked to a private GitHub repo.
A self-propagating malware campaign has compromised over 1,300 npm packages, leveraging legitimate GitHub workflows to spread.
A critical shell injection vulnerability in Wazuh workflows allows attackers to execute arbitrary commands and steal sensitive credentials via pull requests.
A government demand to remove open-source repositories from GitHub challenges the legal limits of controlling offline messaging.
A campaign dubbed FakeGit uses 7,600 fake GitHub repositories to trick AI agents into installing the SmartLoader malware family.
A sophisticated supply chain attack used legitimate GitHub pipelines to push malicious code via the AsyncAPI npm namespace.
A malicious campaign using hundreds of fake repositories is actively deploying the BoryptGrab infostealer to compromised machines.
A leaked GitHub repository containing agency secrets has sparked a congressional investigation into CISA’s internal security posture.
A contractor's exposed repository forced a rapid internal incident response at CISA to secure sensitive cloud credentials.
Threat actors are weaponizing years-old accounts to map organizational structures and probe sensitive repositories via the GitHub API.
A CISA postmortem reveals how a contractor's public repository leak serves as a critical guide for improving organizational security.
A compromised developer account on GitHub allowed attackers to inject silent credential-stealing malware into a popular Web3 ecosystem.
GitHub's npm 12 release hardens software supply chains by disabling install scripts by default and overhauling granular access tokens to mitigate critical risks.