@cz_binance: If you have API keys in your code, even private repos, now is the time to double check and change them...
Summary
Binance CEO warns users to check API keys as GitHub investigates unauthorized access to its internal repositories, though no customer data impact has been confirmed yet.
View Cached Full Text
Cached at: 05/20/26, 08:37 PM
If you have API keys in your code, even private repos, now is the time to double check and change them…
GitHub (@github): We are investigating unauthorized access to GitHub’s internal repositories. While we currently have no evidence of impact to customer information stored outside of GitHub’s internal repositories (such as our customers’ enterprises, organizations, and repositories), we are closely
Similar Articles
GitHub is investigating unauthorized access to their internal repositories
GitHub is investigating unauthorized access to its internal repositories, with no evidence of impact to customer data so far.
@dreamsofcode_io: Really good time to consider putting your SSH Keys on a hardware security key, such as a Yubikey.
A tweet recommends using hardware security keys like Yubikey for SSH keys, referencing an active cross-ecosystem supply chain attack (TrapDoor) on npm, PyPI, and Crates.io involving malicious packages and crypto-stealing malware.
@altryne: PSA: If you are un-aware of the latest supply-chain attacks, or aware but complacent and didn't do anything, especially…
A PSA about a series of supply-chain attacks targeting AI developer tools (Hermes, OpenClaw) via npm and PyPI, specifically the 'Mini-Shai Hulud' worm that self-replicates and steals credentials, API keys, and browser sessions. The post advises sandboxed execution and restricting package age to mitigate risks.
Github: internal repositories have been accessed
A security incident at GitHub led to unauthorized access to internal repositories.
GitHub Source Code Breach - TeamPCP Claims Access to Internal Source Code
TeamPCP claims to have accessed GitHub's internal source code, indicating a significant security breach at the popular development platform.