logo

CyberheistNews Vol 16 #21 [Heads Up] GitHub Breach Shows Developer Tools Are Social Engineering Targets

ID: 4986c480-5ce4-5b31-b26a-167e0bdaffa8

STIX ID: report--4986c480-5ce4-5b31-b26a-167e0bdaffa8

Feed Name: KnowBe4 Blog

Threat Score
70/100

Date Published: 2026-05-27

Date Updated: 2026-05-27

Author: KnowBe4 Team

...
...

This newsletter reports several active and notable threats: a GitHub compromise where a poisoned Visual Studio Code extension allowed access to internal repositories, phishing campaigns leveraging legitimate AI app sharing links to steal credentials, large-scale romance-scam losses in the UK, and industry reports showing social engineering remains a dominant initial access vector and drives insurance claims and ransomware activity.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.