Microsoft-owned GitHub, an open source software development platform, was targeted by some hackers last night. They demand ransom in order to return the hundreds of code sources they stole.
The hackers deleted 392 GitHub accounts, stored the codes and placed them on their own server. They left a note in each account requesting a payment in Bitcoins in order to recover the stolen software.
The message reads:
“To recover your lost code and avoid leakage of: Send us 0,1 Bitcoin (BTC) to our Bitcoin address ES14c7qLb5CYhLMUekctxLgc1FV2Ti9DA and contact us via email post officey to admin@gitsbackup.com with your Git ID and proof of payment.
If you are not sure if we have your data, contact us and we will send you a receipt. Your code has been downloaded and a backup has been created on our servers.
If we do not receive your payment within the next 10 days, we will make the code public or use it differently. "
GitLab Security Director Kathy Wang issued a statement in response to the attacks in cyberspace:
“We have identified the affected accounts and all of them users have been notified. As a result of our investigation, we have strong evidence that the exposed accounts had their passwords stored in plain text.”
Jeremy Galloway, a security researcher at Atlassian, confirmed that a large number of GitHub users have been affected by this hack.
GitHub suggests enabling two-factor authentication to add an extra level of security to your account. See how you can to set it.