SDF Chatter
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
git [he/him, comrade/them]@hexbear.netM to programming@hexbear.netEnglish · 4 days ago

1-Click GitHub Token Stealing via a VSCode Bug

blog.ammaraskar.com

external-link
message-square
1
link
fedilink
  • cross-posted to:
  • blueteamsec@infosec.pub
  • programming@programming.dev
  • cybersecurity@infosec.pub
  • cybersecurity@infosec.pub
  • security@lemmy.ml
  • cybersecurity@sh.itjust.works
  • technology@lemmy.world
  • cybersecurity@infosec.pub
  • security@lemmy.ml
17
external-link

1-Click GitHub Token Stealing via a VSCode Bug

blog.ammaraskar.com

git [he/him, comrade/them]@hexbear.netM to programming@hexbear.netEnglish · 4 days ago
message-square
1
link
fedilink
  • cross-posted to:
  • blueteamsec@infosec.pub
  • programming@programming.dev
  • cybersecurity@infosec.pub
  • cybersecurity@infosec.pub
  • security@lemmy.ml
  • cybersecurity@sh.itjust.works
  • technology@lemmy.world
  • cybersecurity@infosec.pub
  • security@lemmy.ml
My blog, mostly about programming
alert-triangle
You must log in or register to comment.
  • invalidusernamelol [he/him]@hexbear.net
    link
    fedilink
    English
    arrow-up
    1
    ·
    2 days ago

    Lmao, I got hit by this today. Not someone exploiting me, but having to deal with like 3 hours of a bunch of stored tokens freaking out and VSCode panicking at me until I cleared all my caches and cycled my GH login.

programming@hexbear.net

programming@hexbear.net

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !programming@hexbear.net
  1. Post about programming, interesting repos, learning to program, etc. Let’s try to keep free software posts in the c/libre comm unless the post is about the programming/is to the repo.

  2. Do not doxx yourself by posting a repo that is yours and in any way leads to your personally identifying information. Use reports if necessary to alert mods to a potential doxxing.

  3. Be kind, keep struggle sessions focused on the topic of programming.

Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 1 user / day
  • 41 users / week
  • 73 users / month
  • 74 users / 6 months
  • 2 local subscribers
  • 301 subscribers
  • 115 Posts
  • 209 Comments
  • Modlog
  • mods:
  • Llituro [he/him, they/them]@hexbear.net
  • git [he/him, comrade/them]@hexbear.net
  • BE: 0.19.11
  • Modlog
  • Instances
  • Docs
  • Code
  • join-lemmy.org