News, tips, advice, support for Windows, Office, PCs & more. Tech help. No bull. We're community supported by donations from our Plus Members, and proud of it
Home icon Home icon Home icon Email icon RSS icon
  • Microsoft’s GitHub account has been hacked

    Posted on Alex5723 Comment on the AskWoody Lounge

    Home Forums Code Red – Security/Privacy advisories Microsoft’s GitHub account has been hacked

    Viewing 3 reply threads
    • Author
      Posts
      • #2261310 Reply
        Alex5723
        AskWoody Plus

        This is not the first hacking into GitHub.

        Microsoft GitHub account reportedly hit in huge cyberattack

        500GB of data (~1200 projects) allegedly stolen from Microsoft’s GitHub account

        Microsoft’s private GitHub account has been hacked in a major cybersecurity incident for the company.

        A hacker known as Shiny Hunters told BleepingComputer they had gained full access into Microsoft’s account, including supposedly ‘Private’ repositories, and had already downloaded 500GB of private projects…

        https://www.techradar.com/news/microsoft-github-account-reportedly-hit-in-huge-cyberattack

        2 users thanked author for this post.
      • #2261387 Reply
        abbodi86
        AskWoody_MVP

        No country for old Microsoft

      • #2261512 Reply
        OscarCP
        AskWoody Plus

        If true, this would be absolutely devastating news to those developers whose work has been stolen and to their customers, actual and potential, who after this may never benefit from it. But I do wonder about this and similar disclosures: how do the people a “bleepingcomputer” know that this information is real? How do they know that “Shiny Hunters”, the criminal “black hat” that is letting them know about this and claiming that he or she did it, is really a black hat and really did this, or knows about this and is claiming all the glory for his or her pseudonymised self? Do they used some code words to identify themselves to the staff of “blepingcomputer”? I am asking this because I imagine that a real criminal will not send an email from his AOL address to “bleepingcomputer”, but will use as anonymized a connection as possible, he or she being such a big shot cyber criminal and all.

        I am not writing this to dismiss off-hand the alleged facts mentioned in “blepingcomputer”, but because I think it is an interesting question that I have been thinking of asking for some time now.

        Windows 7 Professional, SP1, x64 Group W (ex B) & macOS + Linux (Mint)

      • #2261921 Reply
        Alex5723
        AskWoody Plus

        how do the people a “bleepingcomputer” know that this information is real?

        ….

        The data has been flagged as false at the beginning but was confirmed by Microsoft’s employees to be real.

        1 user thanked author for this post.
    Viewing 3 reply threads

    Please follow the -Lounge Rules- no personal attacks, no swearing, and politics/religion are relegated to the Rants forum.

    Reply To: Microsoft’s GitHub account has been hacked

    You can use BBCodes to format your content.
    Your account can't use Advanced BBCodes, they will be stripped before saving.