logo

Red Hat data breach escalates as ShinyHunters joins extortion

ID: 845b571b-84e0-51d3-b31f-5ed1f142bd56

STIX ID: report--845b571b-84e0-51d3-b31f-5ed1f142bd56

Feed Name: Bleeping Computer

Threat Score
78/100

Date Published: 2025-10-06

Date Updated: 2026-07-17

Author: Lawrence Abrams

...
...

Red Hat confirmed a breach of its GitLab instance used for consulting after the Crimson Collective claimed to have stolen ~570GB across 28,000 repositories, including roughly 800 Customer Engagement Reports; Crimson Collective then partnered with ShinyHunters to publish sample CERs (naming customers such as Walmart, HSBC, Bank of Canada, American Express, and DoD) on a new data-leak extortion site and issued an October 10 deadline for ransom negotiations. The report also outlines ShinyHunters’ operation as an extortion-as-a-service broker and references related extortion claims against SP Global.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.