惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
S
SegmentFault 最新的问题
N
Netflix TechBlog - Medium
Vercel News
Vercel News
F
Fortinet All Blogs
量子位
博客园 - Franky
酷 壳 – CoolShell
酷 壳 – CoolShell
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
MongoDB | Blog
MongoDB | Blog
Y
Y Combinator Blog
GbyAI
GbyAI
博客园 - 三生石上(FineUI控件)
Apple Machine Learning Research
Apple Machine Learning Research
爱范儿
爱范儿
月光博客
月光博客
Recent Announcements
Recent Announcements
人人都是产品经理
人人都是产品经理
Hugging Face - Blog
Hugging Face - Blog
D
DataBreaches.Net
H
Help Net Security
阮一峰的网络日志
阮一峰的网络日志
D
Docker
WordPress大学
WordPress大学

Technology – Silicon Republic

EU agrees to simpler AI rules and complete ‘nudification’ ban Tissue repair therapy Substrato wins best pitch at EI Start-Up Day Major European markets still lagging on salary transparency, finds report Anthropic joins forces with SpaceX for Colossus capacity Enterprise Ireland pumped €33m into home-grown start-ups in 2025 Coimisiún na Meán opens investigation into Meta’s content promotion German quantum computing start-up Eleqtron raises €57m Dublin’s GridBeyond to support energy efficiency with new global headquarters What’s the difference between IT and OT security? Coinbase cuts 14pc of jobs to save costs and embrace AI National research partnership to examine flexible work and Ireland’s economy Anthropic, Blackstone, Goldman Sachs to create AI services company Meta bags Assured Robot Intelligence to further humanoid plans Opinion: Why ISO 27001 alone won't save your data from itself Spotify unveils verified badge to distinguish humans from AI Cork’s Nexalus teams with TuffTek for next-gen cooling systems Dublin’s Version 1 to acquire CreateFuture consultancy Apple posts ‘best March quarter’ with iPhone sales up 21.6pc Cork HQ for new onshore renewables company Perigus Energy What EU Inc really means for Europe’s start-ups – a legal view Meta, Microsoft, Amazon and Alphabet post positive quarterlies Oracle reportedly cutting up to 150 Irish jobs The Leaders’ Room: Boston Scientific’s Sean Gayer on a meaningful mission Report: Medical device cyberattacks on the rise EU finds Meta not doing enough to keep underage users at bay TSMC $231m share sale marks full exit from UK chip designer Arm Datavant opens new global R&D centre in Galway’s Bonham Quay Revolut plans a physical store in Barcelona UK's IoT Tribe launches Dublin base with two new hires Report: Meta to undo Manus acquisition after Chinese block
Hackers access GitHub, download codebase in Grafana Labs ...
Laura Varley · 2026-05-18 · via Technology – Silicon Republic

The hackers have since demanded a ransom payment from Grafana Labs to prevent the release of its codebase.

US software company Grafana Labs has confirmed a breach in which hackers gained access to the organisation’s GitHub system after stealing a private token and downloaded the company’s codebase.  

A provider of an open-source and visualisation web app with 25m users and more than 7,000 customers, including Anthropic, Bloomberg, Nvidia, Microsoft and Salesforce, Grafana Labs has a presence in more than 40 countries. 

In a statement posted on LinkedIn, Grafana Labs said, “Our investigation has determined that no customer data or personal information was accessed during this incident, and we have found no evidence of impact to customer systems or operations.

“We immediately initiated forensic analysis and we believe we’ve identified the source of the credential leak. We have since invalidated the compromised credentials and implemented additional security measures to further secure our environment against unauthorised access.”

The intruder or group – whose identity has yet to be confirmed – sent Grafana Labs a payment demand, threatening to release the stolen code. However, the organisation has refused to comply with the request.

Grafana Labs said, “Based on our operational experience and the published stance of the Federal Bureau of Investigation, which notes that ‘paying a ransom doesn’t guarantee you or your organisation will get any data back’ and only ‘offers an incentive for others to get involved in this type of illegal activity’, we have determined the appropriate path forward is to not pay the ransom.”

The company also stated that as part of its standard security practices, it will share information as part of a post-incident review once the investigation is complete.

Earlier this month, Taiwanese electronics manufacturer Foxconn confirmed a cyberattack affecting its North American operations, after a hacking group claimed to have stolen 8TB of data from it. Nitrogen claimed that the extracted files included confidential instructions, internal project documentation and technical drawings related to projects involving Intel, Apple, Google, Dell, Nvidia and other companies.

And prior to that, Instructure, the parent company behind Canvas, the education management platform reportedly hacked by ShinyHunters, reached an agreement with the cyber gang in which the group has returned stolen data, deleted copies and agreed not to extort client institutions affected in the hack – for unknown compensation.   

Don’t miss out on the knowledge you need to succeed. Sign up for the Daily Brief, Silicon Republic’s digest of need-to-know sci-tech news.