Target employees confirm leaked code after ‘accelerated’ Git lockdown
ID: 24d7f594-4b94-5ee3-b82d-8c7e220684f6
STIX ID: report--24d7f594-4b94-5ee3-b82d-8c7e220684f6
Feed Name: Bleeping Computer
Multiple current and former Target employees told BleepingComputer that a sample of repositories posted by a threat actor on Gitea contains authentic internal source code, system names, codenames, and URLs; Target subsequently accelerated lockdown of its on‑prem Git server (git.target.com) to require internal network or VPN access. The actor claims a full dataset (~860GB) for sale, BleepingComputer reviewed a 14MB sample with authentic artifacts, and a researcher reported a Target employee workstation infected with infostealer malware that had broad access to internal services, though the connection to the leak is not confirmed.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
