Red Hat Investigates Widespread Breach of Private GitLab Repositories
ID: 3495fc3c-6177-5ef1-b203-8049d131f207
STIX ID: report--3495fc3c-6177-5ef1-b203-8049d131f207
Feed Name: Dark Reading
Threat Score
Red Hat confirmed a security incident involving a self-managed GitLab instance used for consulting after an extortion group, Crimson Collective, claimed to have exfiltrated roughly 28,000 private repositories and customer engagement reports (CERs) that may contain network configurations, tokens, keys, and other sensitive data; the group is threatening publication unless paid, and authorities advise rotating credentials and assessing supply-chain exposure.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
