Tag: Grafana GitHub Breach

Grafana GitHub Breach Exposes Source Code via TanStack npm Attack
News

Grafana GitHub Breach Exposes Source Code via TanStack npm Attack

On May 19, 2026, Grafana Labs announced that no proof of client production systems or operations being compromised was discovered during an examination of their recent incident. It stated that the incident's scope is restricted to the Grafana Labs GitHub environment, which consists of internal GitHub repositories as well as public and private source code. Following the initial evaluation, we discovered that the downloaded file contained GitHub repositories that various Grafana Labs teams utilize to store and communicate on internal operational data as well as other business-related information, in addition to source code. This does not contain data extracted from or processed using production systems or the Grafana Cloud platform, but rather business contact names and email addre...