Extortion group Crimson Collective claims it breached Red Hat’s private GitHub repositories, stealing nearly 570GB from 28K projects; Red Hat confirms a breach

Red Hat Confirms Breach of Private GitHub Repositories Impacting Thousands of Projects
Photo: techmeme.com

Red Hat Confirms Breach of Private GitHub Repositories Impacting Thousands of Projects

An extortion group known as Crimson Collective has claimed responsibility for breaching Red Hat’s private GitHub repositories, allegedly stealing nearly 570GB of data from approximately 28,000 projects. Red Hat has confirmed the breach and is investigating the extent and impact of the incident. The stolen data reportedly includes sensitive customer files such as architecture diagrams, configuration details, authentication tokens, and network maps, which essentially provide detailed blueprints of customers’ IT environments. The breach affects a significant number of customers, including prominent entities like the U.S. Navy and Congress. This security incident highlights ongoing vulnerabilities in corporate repositories and the need for robust cybersecurity measures. Red Hat is working to assess the damage and mitigate risks associated with the breach as investigations continue.

Leave a Reply

Your email address will not be published. Required fields are marked *