logo

DOGE Worker’s Code Supports NLRB Whistleblower

ID: d3e823db-eda7-5ed7-86b8-0b18b25f9d4a

STIX ID: report--d3e823db-eda7-5ed7-86b8-0b18b25f9d4a

Feed Name: Krebs on Security

Threat Score
72/100

Date Published: 2025-04-23

Date Updated: 2026-04-19

Author: BrianKrebs

...
...

A whistleblower alleges that DOGE employees at the NLRB obtained elevated, logging-exempt "tenant admin" accounts and used them to download three external GitHub code libraries and over 10 GB of sensitive NLRB case data. One downloaded repository was a fork of an IP-rotator designed to provide large pools of proxy IPs for web scraping and brute forcing; other tools included a headless browser and an API reverse-engineering framework. The report names Marko Elez as the author of the forked tool, notes deleted repositories and critical code reviews, and warns the exfiltration could be used to unfairly target union organizers or influence ongoing labor disputes.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.