{"id":144091,"date":"2025-10-03T23:11:58","date_gmt":"2025-10-03T21:11:58","guid":{"rendered":"https:\/\/prohoster.info\/blog\/novosti-interneta\/vzlom-vnutrennego-gitlab-servera-red-hat"},"modified":"2025-10-03T23:11:58","modified_gmt":"2025-10-03T21:11:58","slug":"vzlom-vnutrennego-gitlab-servera-red-hat","status":"publish","type":"post","link":"https:\/\/prohoster.info\/es\/blog\/news\/vzlom-vnutrennego-gitlab-servera-red-hat","title":{"rendered":"Hackeo del servidor interno de GitLab de Red Hat","gt_translate_keys":[{"key":"rendered","format":"text"}]},"content":{"rendered":"<p>El grupo de hackers Crimson Collective afirm\u00f3 haber obtenido acceso a uno de los servidores internos de GitLab de la empresa Red Hat y haber descargado 570 GB de datos comprimidos que contienen informaci\u00f3n de 28,000 repositorios. Entre otros, los datos capturados incluyen aproximadamente 800 CER (Customer Engagement Report), que contienen informaci\u00f3n confidencial sobre las plataformas e infraestructuras de red de los clientes de Red Hat que recibieron servicios de consultor\u00eda.    <\/p>\n<p>En las capturas de pantalla y ejemplos presentados por los atacantes se menciona la obtenci\u00f3n de datos relacionados con alrededor de 800 clientes de Red Hat, entre los que se encuentran Vodafone, T-Mobile, Siemens, Boeing, Bosch, 3M, Cisco, DHL, Adobe, American Express, Verizon, JPMC, HSBC, Ericsson, Merrick Bank, Telef\u00f3nica, Bank of America, Delta Air Lines, Walmart, Kaiser, IBM, SWIFT, IKEA y AT&amp;T, as\u00ed como el Centro de Desarrollo de Armamento Naval de la Marina de EE. UU., la Administraci\u00f3n Federal de Aviaci\u00f3n de EE. UU., la Agencia Federal de Manejo de Emergencias de EE. UU., la Fuerza A\u00e9rea de EE. UU., la Agencia de Seguridad Nacional de EE. UU., la Oficina de Patentes y Marcas de EE. UU., el Senado de EE. UU. y la C\u00e1mara de Representantes de EE. UU.       <\/p>\n<p>Se afirma que los repositorios capturados contienen informaci\u00f3n sobre la infraestructura de los clientes, configuraciones, tokens de autenticaci\u00f3n, perfiles <a class=\"wpil_keyword_link\" href=\"https:\/\/prohoster.info\/es\/vpn\/\"   title=\"VPN\" data-wpil-keyword-link=\"linked\"  data-wpil-monitor-id=\"283\">VPN<\/a>, datos de inventario, un playbook de Ansible, configuraciones de la plataforma OpenShift, runners de CI\/CD, copias de seguridad y otros datos que pueden ser utilizados para organizar un ataque a las redes internas de los clientes. Los atacantes intentaron comunicarse con Red Hat para extorsionar, pero solo recibieron una respuesta est\u00e1ndar ofreciendo enviar un informe de vulnerabilidad al departamento de seguridad.      <\/p>\n<p>La empresa Red Hat confirm\u00f3 el incidente de seguridad, pero no brind\u00f3 detalles ni coment\u00f3 sobre el contenido de la filtraci\u00f3n. Solo se menciona que el servidor de GitLab hackeado se utilizaba en la divisi\u00f3n de consultor\u00eda y que la empresa tom\u00f3 las medidas necesarias para investigar y recuperar. Los representantes de Red Hat afirman que no tienen motivos para creer que la violaci\u00f3n afect\u00f3 a otros servicios y productos de la empresa, aparte de uno <a class=\"wpil_keyword_link\" href=\"https:\/\/prohoster.info\/es\/server\/dts-los-angeles\/\"   title=\"servidores\" data-wpil-keyword-link=\"linked\"  data-wpil-monitor-id=\"3982\">servidores<\/a> GitLab.      <\/p>\n<p>Adici\u00f3n: La empresa Red Hat ha publicado un informe preliminar sobre el incidente. No se proporcionan detalles en el informe, solo se indica que la empresa ha iniciado una investigaci\u00f3n, durante la cual se descubri\u00f3 que un desconocido accedi\u00f3 al servidor de GitLab utilizado para gestionar proyectos del equipo de Red Hat Consulting y descarg\u00f3 algunos datos.     <\/p>\n<p>Se afirma que los datos descargados por el atacante conten\u00edan especificaciones de proyectos, ejemplos de c\u00f3digo y material informativo interno sobre servicios de consultor\u00eda. En la etapa actual del an\u00e1lisis del incidente, no se ha detectado la filtraci\u00f3n de datos personales importantes.      <\/p>\n<p>No se aclara c\u00f3mo el atacante pudo acceder al servidor de GitLab, pero se indica que en el ataque no se utiliz\u00f3 la vulnerabilidad descubierta ayer (CVE-2025-10725) en OpenShift AI Service, que permite a un usuario autenticado no privilegiado, como un investigador que usa un cuaderno de Jupyter, obtener derechos de administrador del cl\u00faster, teniendo acceso completo a todos los servicios, datos y aplicaciones que se ejecutan en el cl\u00faster, as\u00ed como acceso root a los nodos del cl\u00faster.<br \/>\n<br \/>Fuente: <a content=\"nofollow\" rel=\"nofollow\" href=\"https:\/\/www.opennet.ru\/opennews\/art.shtml?num=63986\">opennet.ru<\/a> <\/p>","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"excerpt":{"rendered":"<p>\u0425\u0430\u043a\u0435\u0440\u0441\u043a\u0430\u044f \u0433\u0440\u0443\u043f\u043f\u0430 Crimson Collective \u0437\u0430\u044f\u0432\u0438\u043b\u0430 \u043e \u043f\u043e\u043b\u0443\u0447\u0435\u043d\u0438\u0438 \u0434\u043e\u0441\u0442\u0443\u043f\u0430 \u043a \u043e\u0434\u043d\u043e\u043c\u0443 \u0438\u0437 \u0432\u043d\u0443\u0442\u0440\u0435\u043d\u043d\u0438\u0445 GitLab-\u0441\u0435\u0440\u0432\u0435\u0440\u043e\u0432 \u043a\u043e\u043c\u043f\u0430\u043d\u0438\u0438 Red Hat \u0438 \u0437\u0430\u0433\u0440\u0443\u0437\u043a\u0435 \u0441 \u043d\u0435\u0433\u043e 570\u0413\u0411 \u0441\u0436\u0430\u0442\u044b\u0445 \u0434\u0430\u043d\u043d\u044b\u0445, \u0441\u043e\u0434\u0435\u0440\u0436\u0430\u0449\u0438\u0445 \u0438\u043d\u0444\u043e\u0440\u043c\u0430\u0446\u0438\u044e \u0438\u0437 28 \u0442\u044b\u0441\u044f\u0447 \u0440\u0435\u043f\u043e\u0437\u0438\u0442\u043e\u0440\u0438\u0435\u0432. \u0421\u0440\u0435\u0434\u0438 \u043f\u0440\u043e\u0447\u0435\u0433\u043e \u0432 \u0437\u0430\u0445\u0432\u0430\u0447\u0435\u043d\u043d\u044b\u0445 \u0434\u0430\u043d\u043d\u044b\u0445 \u043f\u0440\u0438\u0441\u0443\u0442\u0441\u0442\u0432\u043e\u0432\u0430\u043b\u043e \u043e\u043a\u043e\u043b\u043e 800 CER-\u043e\u0442\u0447\u0451\u0442\u043e\u0432 (Customer Engagement Report), \u0441\u043e\u0434\u0435\u0440\u0436\u0430\u0449\u0438\u0445 \u043a\u043e\u043d\u0444\u0438\u0434\u0435\u043d\u0446\u0438\u0430\u043b\u044c\u043d\u0443\u044e \u0438\u043d\u0444\u043e\u0440\u043c\u0430\u0446\u0438\u044e \u043e \u043f\u043b\u0430\u0442\u0444\u043e\u0440\u043c\u0430\u0445 \u0438 \u0441\u0435\u0442\u0435\u0432\u044b\u0445 \u0438\u043d\u0444\u0440\u0430\u0441\u0442\u0440\u0443\u043a\u0442\u0443\u0440\u0430\u0445 \u043a\u043b\u0438\u0435\u043d\u0442\u043e\u0432 Red Hat, \u043a\u043e\u0442\u043e\u0440\u044b\u043c \u043f\u0440\u0435\u0434\u043e\u0441\u0442\u0430\u0432\u043b\u044f\u043b\u0438\u0441\u044c \u043a\u043e\u043d\u0441\u0430\u043b\u0442\u0438\u043d\u0433\u043e\u0432\u044b\u0435 [&hellip;]<\/p>\n","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[702],"tags":[],"class_list":["post-144091","post","type-post","status-publish","format-standard","hentry","category-news"],"aioseo_notices":[],"aioseo_head":"\n\t\t<!-- All in One SEO 5.0.2 - aioseo.com -->\n\t<meta name=\"description\" content=\"\u0425\u0430\u043a\u0435\u0440\u0441\u043a\u0430\u044f \u0433\u0440\u0443\u043f\u043f\u0430 Crimson Collective \u0437\u0430\u044f\u0432\u0438\u043b\u0430 \u043e \u043f\u043e\u043b\u0443\u0447\u0435\u043d\u0438\u0438 \u0434\u043e\u0441\u0442\u0443\u043f\u0430 \u043a \u043e\u0434\u043d\u043e\u043c\u0443 \u0438\u0437 \u0432\u043d\u0443\u0442\u0440\u0435\u043d\u043d\u0438\u0445 GitLab-\u0441\u0435\u0440\u0432\u0435\u0440\u043e\u0432 \u043a\u043e\u043c\u043f\u0430\u043d\u0438\u0438 Red Hat \u0438 \u0437\u0430\u0433\u0440\u0443\u0437\u043a\u0435 \u0441 \u043d\u0435\u0433\u043e 570\u0413\u0411 \u0441\u0436\u0430\u0442\u044b\u0445 \u0434\u0430\u043d\u043d\u044b\u0445, \u0441\u043e\u0434\u0435\u0440\u0436\u0430\u0449\u0438\u0445 \u0438\u043d\u0444\u043e\u0440\u043c\u0430\u0446\u0438\u044e \u0438\u0437 28 \u0442\u044b\u0441\u044f\u0447 \u0440\u0435\u043f\u043e\u0437\u0438\u0442\u043e\u0440\u0438\u0435\u0432.\" \/>\n\t<meta name=\"robots\" content=\"max-image-preview:large\" \/>\n\t<meta name=\"author\" content=\"Yuri Gagarin\"\/>\n\t<link rel=\"canonical\" href=\"https:\/\/prohoster.info\/es\/blog\/news\/vzlom-vnutrennego-gitlab-servera-red-hat\" \/>\n\t<meta name=\"generator\" content=\"All in One SEO (AIOSEO) 5.0.2\" \/>\n\t\t<meta property=\"og:locale\" content=\"es_ES\" \/>\n\t\t<meta property=\"og:site_name\" content=\"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b\" \/>\n\t\t<meta property=\"og:type\" content=\"article\" \/>\n\t\t<meta property=\"og:title\" content=\"\ud83e\udd47\u0412\u0437\u043b\u043e\u043c \u0432\u043d\u0443\u0442\u0440\u0435\u043d\u043d\u0435\u0433\u043e GitLab-\u0441\u0435\u0440\u0432\u0435\u0440\u0430 Red Hat | ProHoster\" \/>\n\t\t<meta property=\"og:description\" content=\"\u0425\u0430\u043a\u0435\u0440\u0441\u043a\u0430\u044f \u0433\u0440\u0443\u043f\u043f\u0430 Crimson Collective \u0437\u0430\u044f\u0432\u0438\u043b\u0430 \u043e \u043f\u043e\u043b\u0443\u0447\u0435\u043d\u0438\u0438 \u0434\u043e\u0441\u0442\u0443\u043f\u0430 \u043a \u043e\u0434\u043d\u043e\u043c\u0443 \u0438\u0437 \u0432\u043d\u0443\u0442\u0440\u0435\u043d\u043d\u0438\u0445 GitLab-\u0441\u0435\u0440\u0432\u0435\u0440\u043e\u0432 \u043a\u043e\u043c\u043f\u0430\u043d\u0438\u0438 Red Hat \u0438 \u0437\u0430\u0433\u0440\u0443\u0437\u043a\u0435 \u0441 \u043d\u0435\u0433\u043e 570\u0413\u0411 \u0441\u0436\u0430\u0442\u044b\u0445 \u0434\u0430\u043d\u043d\u044b\u0445, \u0441\u043e\u0434\u0435\u0440\u0436\u0430\u0449\u0438\u0445 \u0438\u043d\u0444\u043e\u0440\u043c\u0430\u0446\u0438\u044e \u0438\u0437 28 \u0442\u044b\u0441\u044f\u0447 \u0440\u0435\u043f\u043e\u0437\u0438\u0442\u043e\u0440\u0438\u0435\u0432.\" \/>\n\t\t<meta property=\"og:url\" content=\"https:\/\/prohoster.info\/es\/blog\/news\/vzlom-vnutrennego-gitlab-servera-red-hat\" \/>\n\t\t<meta property=\"og:image\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:secure_url\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:width\" content=\"350\" \/>\n\t\t<meta property=\"og:image:height\" content=\"350\" \/>\n\t\t<meta property=\"article:published_time\" content=\"2025-10-03T21:11:58+00:00\" \/>\n\t\t<meta property=\"article:modified_time\" content=\"2025-10-03T21:11:58+00:00\" \/>\n\t\t<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<meta property=\"article:author\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<!-- All in One SEO -->\n\n","aioseo_head_json":{"title":"\ud83e\udd47Hackeo del servidor interno de GitLab de Red Hat | ProHoster","description":"El grupo de hackers Crimson Collective declar\u00f3 haber obtenido acceso a uno de los servidores internos de GitLab de la empresa Red Hat y haber descargado 570GB de datos comprimidos que contienen informaci\u00f3n de 28,000 repositorios.","canonical_url":"https:\/\/prohoster.info\/es\/blog\/news\/vzlom-vnutrennego-gitlab-servera-red-hat","robots":"max-image-preview:large","keywords":"","webmasterTools":{"miscellaneous":""},"schema":null,"og:locale":"es_ES","og:site_name":"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b","og:type":"article","og:title":"\ud83e\udd47\u0412\u0437\u043b\u043e\u043c \u0432\u043d\u0443\u0442\u0440\u0435\u043d\u043d\u0435\u0433\u043e GitLab-\u0441\u0435\u0440\u0432\u0435\u0440\u0430 Red Hat | ProHoster","og:description":"\u0425\u0430\u043a\u0435\u0440\u0441\u043a\u0430\u044f \u0433\u0440\u0443\u043f\u043f\u0430 Crimson Collective \u0437\u0430\u044f\u0432\u0438\u043b\u0430 \u043e \u043f\u043e\u043b\u0443\u0447\u0435\u043d\u0438\u0438 \u0434\u043e\u0441\u0442\u0443\u043f\u0430 \u043a \u043e\u0434\u043d\u043e\u043c\u0443 \u0438\u0437 \u0432\u043d\u0443\u0442\u0440\u0435\u043d\u043d\u0438\u0445 GitLab-\u0441\u0435\u0440\u0432\u0435\u0440\u043e\u0432 \u043a\u043e\u043c\u043f\u0430\u043d\u0438\u0438 Red Hat \u0438 \u0437\u0430\u0433\u0440\u0443\u0437\u043a\u0435 \u0441 \u043d\u0435\u0433\u043e 570\u0413\u0411 \u0441\u0436\u0430\u0442\u044b\u0445 \u0434\u0430\u043d\u043d\u044b\u0445, \u0441\u043e\u0434\u0435\u0440\u0436\u0430\u0449\u0438\u0445 \u0438\u043d\u0444\u043e\u0440\u043c\u0430\u0446\u0438\u044e \u0438\u0437 28 \u0442\u044b\u0441\u044f\u0447 \u0440\u0435\u043f\u043e\u0437\u0438\u0442\u043e\u0440\u0438\u0435\u0432.","og:url":"https:\/\/prohoster.info\/es\/blog\/news\/vzlom-vnutrennego-gitlab-servera-red-hat","og:image":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:secure_url":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:width":350,"og:image:height":350,"article:published_time":"2025-10-03T21:11:58+00:00","article:modified_time":"2025-10-03T21:11:58+00:00","article:publisher":"https:\/\/www.facebook.com\/prohoster","article:author":"https:\/\/www.facebook.com\/prohoster"},"aioseo_meta_data":{"post_id":"144091","title":null,"description":null,"keywords":null,"keyphrases":null,"primary_term":null,"canonical_url":null,"og_title":null,"og_description":null,"og_object_type":"default","og_image_type":"default","og_image_url":null,"og_image_width":null,"og_image_height":null,"og_image_custom_url":null,"og_image_custom_fields":null,"og_video":null,"og_custom_url":null,"og_article_section":null,"og_article_tags":null,"twitter_use_og":false,"twitter_card":"default","twitter_image_type":"default","twitter_image_url":null,"twitter_image_custom_url":null,"twitter_image_custom_fields":null,"twitter_title":null,"twitter_description":null,"schema":{"blockGraphs":[],"customGraphs":[],"default":{"data":{"Article":[],"Course":[],"Dataset":[],"FAQPage":[],"Movie":[],"Person":[],"Product":[],"ProductReview":[],"Car":[],"Recipe":[],"Service":[],"SoftwareApplication":[],"WebPage":[]},"graphName":"","isEnabled":true},"graphs":[]},"schema_type":"default","schema_type_options":null,"pillar_content":false,"robots_default":true,"robots_noindex":false,"robots_noarchive":false,"robots_nosnippet":false,"robots_nofollow":false,"robots_noimageindex":false,"robots_noodp":false,"robots_notranslate":false,"robots_max_snippet":null,"robots_max_videopreview":null,"robots_max_imagepreview":"large","priority":null,"frequency":null,"local_seo":null,"seo_analyzer_scan_date":"2026-02-22 15:54:02","breadcrumb_settings":null,"limit_modified_date":false,"reviewed_by":null,"ai":null,"created":"2026-01-23 15:06:19","updated":"2026-02-22 15:54:02","focus_keyword":null,"additional_keywords":null,"truseo_locale":null},"gt_translate_keys":[{"key":"link","format":"url"}],"_links":{"self":[{"href":"https:\/\/prohoster.info\/es\/wp-json\/wp\/v2\/posts\/144091","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/prohoster.info\/es\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/prohoster.info\/es\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/prohoster.info\/es\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/prohoster.info\/es\/wp-json\/wp\/v2\/comments?post=144091"}],"version-history":[{"count":2,"href":"https:\/\/prohoster.info\/es\/wp-json\/wp\/v2\/posts\/144091\/revisions"}],"predecessor-version":[{"id":162511,"href":"https:\/\/prohoster.info\/es\/wp-json\/wp\/v2\/posts\/144091\/revisions\/162511"}],"wp:attachment":[{"href":"https:\/\/prohoster.info\/es\/wp-json\/wp\/v2\/media?parent=144091"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/prohoster.info\/es\/wp-json\/wp\/v2\/categories?post=144091"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/prohoster.info\/es\/wp-json\/wp\/v2\/tags?post=144091"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}