BlockBeats News, May 18, an open-source data visualization tool Grafana posted on X platform, stating that a unauthorized attacker recently gained access to a token that could access the Grafana Labs GitHub environment and used it to download company code. After investigation, it was confirmed that this incident did not involve any customer data or personal information leakage, and no impact on customer systems or business operations was found. The company promptly initiated forensic analysis, identified the source of the credential leak, invalidated the relevant credentials, and deployed additional security measures to strengthen environmental protection.In addition, Grafana disclosed that the attacker had attempted to extort a ransom to prevent the code repository from being made public. However, the company ultimately decided to refuse to pay the ransom and will release more incident postmortem information after the investigation concludes.
