Grafana

Grafana Says Codebase and Other Data Stolen via TanStack Supply Chain Attack

Grafana Says Codebase and Other Data Stolen via TanStack Supply Chain Attack 2026-05-22 at 10:53 By Ionut Arghire Hackers accessed Grafana’s GitHub repositories after a token compromised in the TanStack attack was not rotated. The post Grafana Says Codebase and Other Data Stolen via TanStack Supply Chain Attack appeared first on SecurityWeek. This article is […]

Grafana Says Codebase and Other Data Stolen via TanStack Supply Chain Attack Read More »

GitHub, Grafana Labs breaches traced back to TanStack supply chain compromise

GitHub, Grafana Labs breaches traced back to TanStack supply chain compromise 2026-05-21 at 16:56 By Zeljka Zorz GitHub CISO Alexis Wales has named the malicious VS Code extension behind the breach they suffered at the hands of the threat group TeamPCP: Nx Console, a popular developer tool with 2.2 million installs. A malicious version of

GitHub, Grafana Labs breaches traced back to TanStack supply chain compromise Read More »

Attackers accessed, downloaded code from Grafana Labs’ GitHub

Attackers accessed, downloaded code from Grafana Labs’ GitHub 2026-05-18 at 12:57 By Zeljka Zorz A threat actor has managed to access Grafana Labs’ GitHub environment and download the company’s codebase, the open-source observability and data visualization firm announced on Sunday. The breach is significant given Grafana Labs’ widespread use across enterprise engineering and DevOps teams

Attackers accessed, downloaded code from Grafana Labs’ GitHub Read More »

Grafana Confirms Breach After Hackers Claim They Stole Data

Grafana Confirms Breach After Hackers Claim They Stole Data 2026-05-18 at 12:08 By Eduard Kovacs Grafana appears to have been targeted by Coinbase Cartel, a cybercrime group linked to ShinyHunters, Scattered Spider, and Lapsus$. The post Grafana Confirms Breach After Hackers Claim They Stole Data appeared first on SecurityWeek. This article is an excerpt from

Grafana Confirms Breach After Hackers Claim They Stole Data Read More »

GrafanaGhost: Attackers Can Abuse Grafana to Leak Enterprise Data

GrafanaGhost: Attackers Can Abuse Grafana to Leak Enterprise Data 2026-04-07 at 20:31 By Ionut Arghire By targeting Grafana’s AI components, attackers can point to external resources and inject indirect prompts to bypass safeguards. The post GrafanaGhost: Attackers Can Abuse Grafana to Leak Enterprise Data appeared first on SecurityWeek. This article is an excerpt from SecurityWeek

GrafanaGhost: Attackers Can Abuse Grafana to Leak Enterprise Data Read More »

Grafana Flaws Likely Targeted in Broad SSRF Exploitation Campaign

Grafana Flaws Likely Targeted in Broad SSRF Exploitation Campaign 2025-03-13 at 17:17 By Ionut Arghire Threat actors are likely targeting Grafana path traversal bugs for reconnaissance in a SSRF exploitation campaign targeting popular platforms. The post Grafana Flaws Likely Targeted in Broad SSRF Exploitation Campaign appeared first on SecurityWeek. This article is an excerpt from

Grafana Flaws Likely Targeted in Broad SSRF Exploitation Campaign Read More »

Scroll to Top