Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Grafana Confirms Data Breach from TanStack Supply Chain Attack

Grafana Confirms Data Breach from TanStack Supply Chain Attack

Posted on May 22, 2026 By CWS

Grafana Labs has recently disclosed a breach in its data security following a supply chain attack related to TanStack. The incident, which involved unauthorized access to the company’s GitHub repositories, became public knowledge earlier this month.

Details of the TanStack Attack

The breach was part of a larger attack that occurred on May 11, affecting TanStack and other significant projects hosted on NPM and PyPI. This attack involved the deployment of self-propagating malware designed to steal information from the affected systems.

Grafana Labs quickly identified the malicious activities on the same day and took immediate action to secure their systems by rotating GitHub workflow tokens. Despite these measures, one token remained vulnerable, allowing attackers to infiltrate their GitHub repositories.

Response and Mitigation Efforts

Following the breach, Grafana Labs received a ransom demand from the attackers on May 16 but opted not to comply. Instead, the company intensified its security measures, reinforcing its GitHub defenses and alerting law enforcement authorities to the breach.

The company assures that the impact was confined to their GitHub repositories, which include both public and private code, as well as internal repositories. Importantly, they emphasize that no customer production systems or operations were compromised, although the attackers did manage to steal the company’s codebase and internal business information.

Implications and Future Outlook

Grafana Labs confirmed that while their codebase was downloaded, it remained unaltered, and no immediate action is required from their customers or open source users. The stolen data included professional contact information, but did not involve any production system data or Grafana Cloud platform information.

The incident highlights ongoing vulnerabilities in supply chain security, emphasizing the need for increased visibility and proactive measures to counter such threats. Grafana’s response underlines the importance of robust security protocols and collaboration with law enforcement to mitigate future risks.

Security Week News Tags:codebase theft, cyber attack, Cybersecurity, data breach, GitHub, GitHub repositories, Grafana, IT security, Malware, NPM, PyPI, ransom demand, supply chain attack, TanStack

Post navigation

Previous Post: Splunk Resolves Vulnerabilities Exposing Data and Causing DoS
Next Post: CISA Alerts: Exploited Vulnerability in Trend Micro Apex One

Related Posts

Latvian Hacker Jailed for Karakurt Ransomware Crimes Latvian Hacker Jailed for Karakurt Ransomware Crimes Security Week News
Organizations Warned of Exploited PaperCut Flaw Organizations Warned of Exploited PaperCut Flaw Security Week News
MITRE Releases 2025 List of Top 25 Most Dangerous Software Vulnerabilities MITRE Releases 2025 List of Top 25 Most Dangerous Software Vulnerabilities Security Week News
Data Breach by Over 300 Chrome Extensions Uncovered Data Breach by Over 300 Chrome Extensions Uncovered Security Week News
Flaws in Gigabyte Firmware Allow Security Bypass, Backdoor Deployment Flaws in Gigabyte Firmware Allow Security Bypass, Backdoor Deployment Security Week News
Join Today’s Virtual Summit on Cyber Threat Response Join Today’s Virtual Summit on Cyber Threat Response Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Megalodon Campaign Targets Thousands of GitHub Repositories
  • Hugging Face Exploited in North Korean Malware Attack
  • Canadian Accused of Running Major DDoS Botnet
  • FBI Alerts on New Phishing Platform Targeting Microsoft 365
  • CISA Alerts: Exploited Vulnerability in Trend Micro Apex One

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Megalodon Campaign Targets Thousands of GitHub Repositories
  • Hugging Face Exploited in North Korean Malware Attack
  • Canadian Accused of Running Major DDoS Botnet
  • FBI Alerts on New Phishing Platform Targeting Microsoft 365
  • CISA Alerts: Exploited Vulnerability in Trend Micro Apex One

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark