LOWVulnerability
Global

GitHub Tells Self-Hosted Admins to Rotate Keys

·Source: Bank Info Security

Updated:

Executive Summary

Company Pushes Key Rotation After 3,800 Repositories Compromised Hacked code repository GitHub warned administrators of self-hosted git servers to rotate public encryption keys following a May 18 incident involving a poisoned V

Analysis

Company Pushes Key Rotation After 3,800 Repositories Compromised Hacked code repository GitHub warned administrators of self-hosted git servers to rotate public encryption keys following a May 18 incident involving a poisoned VS Code extension used by an employee. GitHub CISO Alexis Wales in a Tuesday update said the repository is rotating all keys.

Indicators of Compromise (2)

URL (1)
https://ismg-cdn.nyc3.cdn.digitaloceanspaces.com/articles/github-tells-self-hosted-admins-to-rotate-keys-image_small-1-a-31787.jpg
Domain (1)
ismg-cdn.nyc3.cdn.digitaloceanspaces.com
Source Attribution

Originally published by Bank Info Security on May 27, 2026.

Related Threats