There's another likely North Korean-linked scam hitting developers and their employers, while snarfing up credentials and ...
A VS Code vulnerability in GitHub.dev lets attackers steal full GitHub OAuth tokens via a single malicious link, exposing all private repositories.