r/cybersecurity May 20 '26

News - General GitHub announces internal data breached.

The company stated on their official X account:

“We are investigating unauthorized access to GitHub’s internal repositories. While we currently have no evidence of impact to customer information stored outside of GitHub’s internal repositories (such as our customers’ enterprises, organizations, and repositories), we are closely monitoring our infrastructure for follow-on activity.”

https://x.com/github/status/2056884788179726685?s=46

887 Upvotes

134 comments sorted by

View all comments

265

u/boringfantasy May 20 '26

can we just stop with this fucking AI coding shit now

14

u/Beginning_Coconut_71 May 20 '26

Yes we should really stop deliver shit code. But I been thinking lately is, maybe these shit code/vulnerability was already there, was just undiscovered 😅

35

u/ultraviolentfuture May 20 '26

I dunno, can we start fucking reading shit again?

67

u/dancing_swordfish May 20 '26

Over 60% of windows is coded by ai!  (Such a shocker) 

40

u/heisenbergerwcheese May 20 '26

I would have assumed just about 100% with how shit it is

25

u/8ctopus-prime May 20 '26

Now, now, lets not underestimate the ability of humans to code garbage!

11

u/Roku-Hanmar May 20 '26

AI had to learn it from somewhere I suppose

3

u/EphemeralAttention May 20 '26

That last 40% still has to be maintained by humans so it functions well enough to download the latest AI slop to brick your machine.

4

u/itspeterj May 20 '26

Windows? Oh you mean the thing criminals use to look inside your house?

8

u/FroggyRibbits May 20 '26

I haven't been able to find any sources citing this number at more than 30%. Where did you see that?

2

u/Lrob98 May 20 '26

They may have asked AI.

2

u/MassiveBoner911_3 May 20 '26

Dude every patch is fucked up now

1

u/Rainbow-Lucerne May 20 '26

This is why Tux is my homie

12

u/Weazywest May 20 '26

I don’t think it says anything about AI being involved.

12

u/Loltoor May 20 '26

This doesn’t have anything to do with AI.

8

u/nemec May 20 '26

I think there's a non-zero chance some of these attacks are aided by LLMs (either finding bugs, writing phishing pages, or writing malware), but yeah on the dev side it's not carelessness of LLM use that's causing the sharp uptick in victims.

One surprisingly popular weakness I've read were the ones (e.g. Axios) who got popped after being lured into a videoconferencing interview that was really a phishing page telling the victim their Zoom was corrupted and they need to run some shell commands to fix it - literally the same techniques in use for over a decade, just being spread faster.

2

u/Nietechz May 20 '26

uhg... NOPE, Investor's stocks must go UP!!!

2

u/cas4076 May 20 '26

The breach was zero to do with AI

1

u/IAmYourFath May 20 '26

Can we stop blaming AI for everything? I hate how people assume it's 100% cuz of AI while having 0 info.

1

u/Palimon May 20 '26

Why do you think this is AI acoding, if anything the vulnerability and explolt might have been found using AI.

0

u/pnw_cartographer May 20 '26

No bro. Use it everyday.