A poisoned VS Code extension led to a GitHub breach, and Microsoft owns every link in the chain
…1Password vaults, Anthropic Claude Code configs, npm tokens, GitHub credentials, and AWS keys. Both media reports and Nx's own statements tie the malicious build to the compromise of a GitHub employee…
