Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

For what it's worth, elsewhere in this comment section someone posted that Github Support says the zip downloads weren't related to this incident. Reading between the lines, the compromised repos were probably accessed using normal git clone actions.


That was me who posted that :) seems unrelated, but still hoping to get that figured out anyway.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: