Grafana breach caused by missed token rotation after TanStack attack
Grafana Labs disclosed a data breach from an unrotated GitHub token after the TanStack npm attack, exposing internal repositories and business contacts but no customer systems.
Tag
Stories with this tag. Sections and all tags live in the Topics menu; for full-text use search.
Grafana Labs disclosed a data breach from an unrotated GitHub token after the TanStack npm attack, exposing internal repositories and business contacts but no customer systems.
Grafana Labs confirmed hackers stole its source code via a compromised GitLab token but refused to pay ransom, contrasting with Instructure's recent payment to hackers.
Grafana Labs disclosed a breach where hackers stole its source code via a stolen GitHub token, but no customer data was exposed. The company refused to pay the ransom, following FBI advice.