Vercel Confirms Data Breach — Hackers Claim Access to Internal Systems
ID: db80a605-419c-56a4-bf44-c59c4b972d7b
STIX ID: report--db80a605-419c-56a4-bf44-c59c4b972d7b
Feed Name: cybersecurityNews.com
Vercel disclosed an April 2026 security incident in which attackers abused a compromised Context.ai Google Workspace OAuth app to access an employee account, pivot into select Vercel environments, and read non-sensitive environment variables and employee records; an actor claiming to be ShinyHunters is offering the alleged data and access for $2 million. Vercel has engaged Mandiant, notified law enforcement, confirmed sensitive variables marked as protected were not accessed, and is urging customers to rotate keys, audit Google Workspace for the identified OAuth client ID, and enable sensitive environment protections.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
