Security News

Cybersecurity news aggregator

MEDIUM Attacks SC Media

Grafana Labs discloses GitHub environment breach, source code downloaded

  • What: Grafana Labs reports a GitHub breach with source code stolen
  • Impact: Unauthorized access to internal systems and potential risk to company infrastructure
Read Full Article →

Breach Grafana Labs discloses GitHub environment breach, source code downloaded May 18, 2026 Share By SC Staff (Credit: Timon – stock.adobe.com) Per HackRead, Grafana Labs has reported a security incident where an unauthorized actor gained access to a portion of its GitHub environment, resulting in the download of the company's source code. The breach occurred after a threat actor obtained a compromised token. Grafana Labs stated that its investigation has found no evidence of customer data exposure or impact to customer systems. The attacker reportedly attempted to extort Grafana Labs by demanding payment in exchange for not releasing the stolen code. Grafana Labs declined to pay, citing FBI guidance that advises against such payments, as they do not guarantee data recovery and can encourage further criminal activity. The company has invalidated the compromised credentials, implemented new safeguards, and is conducting a forensic investigation to understand how the credentials were exposed. While customer data was not compromised, breaches involving source code can still pose long-term security risks, as attackers may analyze the code for vulnerabilities or deployment details to aid future attacks. Grafana Labs plans to release further details following the completion of its post-incident review. Source: HackRead SC Staff Related Breach American Lending Center data breach impacts over 123,000 individuals SC Staff May 15, 2026 The breach involved a ransomware attack where threat actors compromised the internal network and accessed files containing personal identifying information. Breach BWH Hotels confirms cyberattack impacting customer data SC Staff May 13, 2026 The cyberattack on BWH Hotels, which operates under brands like Best Western, WorldHotels, and SureStay Hotels, compromised customer names, email addresses, phone numbers, and postal addresses. Breach Škoda Auto discloses data breach after online shop hack SC Staff May 13, 2026 Attackers exploited an unspecified vulnerability in the software of Škoda's e-commerce portal to gain unauthorized access. Get daily email updates SC Media's daily must-read of the most current and pressing daily news Business Email By clicking the Subscribe button below, you agree to SC Media Terms of Use and Privacy Policy . Subscribe Related Terms Attack Vector You can skip this ad in 5 seconds

Share this article