Last Tuesday, cybercriminals launched brute-force attacks against the popular web code development and hosting platform, Github.
Users of the platform reported failed login attempts originating from China, Venezuela, Indonesia, Ecuador, and other countries.
According to GitHub, the attack resulted in the compromise of several accounts with weak passwords. The company notified affected users via email and reset their account passwords. The accounts' SSH keys, access tokens, and OAuth permissions were also revoked.
The company said that the attack used approximately 40,000 unique IP addressesto make automated login attempts to user accounts with weak passwords or passwords used across multiple websites.
GitHub advises users to regularly check their accounts, use strong passwords, and enable authentication .

