The hackers compromised GitHub Action tags, then shifted to NPM, Docker Hub, VS Code, and PyPI, and teamed with Lapsus$.
Subscribe to our weekly newsletter for the latest in industry news, expert insights, dedicated information security content and online events.