Cyber-Crime

Grafana Labs admits all its codebase are belong to someone who popped its GitHub account

No customer info stolen, no impact to operations, and no blackmail payment

Observability outfit Grafana Labs has revealed that an attacker accessed its GitHub repository and stole its codebase.In social media posts the company blamed the situation on an “unauthorized party” who was somehow able to obtain a token that offered access to its GitHub environment.The company thinks it has identified the source of the credential leak, and therefore “invalidated the compromised credentials and implemented additional security measures to further secure our environment against unauthorized access.”

But that didn’t stop the attacker from threatening to release the company’s code unless Grafana paid a ransom.