logo

Acuity confirms hackers stole non-sensitive govt data from GitHub repos

ID: cb47894d-b6e8-5d73-92d9-23f2f19dc078

STIX ID: report--cb47894d-b6e8-5d73-92d9-23f2f19dc078

Feed Name: Bleeping Computer

Threat Score
72/100

Date Published: 2024-04-05

Date Updated: 2026-04-20

Author: Sergiu Gatlan

...
...

Acuity, a U.S. federal contractor, reported a cybersecurity incident in which attackers exploited a vulnerability in a Tekton CI/CD server to obtain GitHub credentials and access private repositories; threat actors IntelBroker and Sangierro have since leaked thousands of records allegedly containing data tied to U.S. government agencies and claim some Five Eyes documents. Acuity and a third-party investigator report no evidence of client-sensitive data impact so far, while the U.S. State Department is investigating the alleged theft.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.