Grafana Labs Discloses GitHub Breach on May 20; Confirms Customer Production Systems Unaffected

GateNews

According to Grafana Labs, the company confirmed on May 16 that its GitHub repositories were compromised through a targeted attack, with attackers downloading source code and demanding ransom. The breach originated from the TanStack npm supply chain incident, with attackers subsequently exploiting an exposed GitHub Actions token to access internal repositories.

Grafana Labs emphasized that customer production systems and Grafana Cloud remain unaffected; the incident was limited to source code and internal collaboration repositories, with no code tampering detected. Downloaded data may include internal operational information and contact details, but no production system data. The company rejected the ransom demand and is cooperating with law enforcement.

Disclaimer: The information on this page may come from third-party sources and is for reference only. It does not represent the views or opinions of Gate and does not constitute any financial, investment, or legal advice. Virtual asset trading involves high risk. Please do not rely solely on the information on this page when making decisions. For details, see the Disclaimer.
Comment
0/400
No comments