Grafana Labs, the company behind the eponymous open monitoring and data visualization platform, has revealed details about an attack that compromised an access token for its GitHub environment. The attackers used the token to download code for proprietary products from private repositories and attempted to extort money by threatening to disclose the obtained codebase. Grafana Labs representatives refused to pay. According to the company, the attackers did not gain access to personal information or user data. Further details about the incident are expected to be published after the investigation is complete.
Source: opennet.ru