Vercel confirmed a security incident involving unauthorized access to certain internal systems after a threat actor using the name ShinyHunters claimed to be selling allegedly stolen company data on a hacking forum. The company said only a limited subset of customers was affected, its services remain operational, and it has engaged incident response experts, notified law enforcement, and is working directly with impacted customers.
The actor claimed the stolen data included access keys, source code, database data, internal deployment access, and API keys, and shared a text file with 580 employee-related records along with a screenshot purportedly showing an internal Vercel Enterprise dashboard. Vercel advised customers to review environment variables and rotate secrets if necessary, while the authenticity of the leaked materials and the attribution to ShinyHunters remained unverified; the actor also claimed on Telegram that a $2 million ransom demand had been discussed with the company.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
10 events from the most recent confirmed update back to the earliest known activity.
Vercel disclosed that attackers traversed internal systems and stole and decrypted customer data, including stored environment variables, creating downstream risk to affected customers' production environments. The company said this finding came from continued analysis of nearly a petabyte of logs during its ongoing investigation.
Vercel said attackers reached internal systems that stored unencrypted customer credentials during the broader intrusion investigation. The disclosure marked a significant impact escalation beyond previously reported customer-account compromises and internal-system access.
Vercel disclosed that its ongoing investigation found an additional set of customer accounts compromised after attackers accessed internal systems in the Context.ai-linked breach. The company also identified a small number of separate customer-account compromises that predated and were independent of the main incident, possibly involving social engineering or malware.
Vercel stated it found no evidence that npm packages published by the company were affected by the breach and said its software supply chain remains safe. The statement narrowed the apparent impact of the incident beyond previously disclosed internal-system access.
Vercel said the intrusion began when attackers abused a malicious or compromised Google Workspace OAuth app tied to a Vercel employee's use of third-party AI tool Context.ai, allowing access to the employee's Google Workspace account and pivoting into select environments. The company also published the OAuth app identifier as an indicator of compromise and said Mandiant was assisting the investigation.
Vercel disclosed unauthorized access to certain internal systems and said only a limited subset of customers was affected while its services remained operational. The company said it was investigating the breach, engaged incident response experts, notified law enforcement, and advised impacted customers to review environment variables and rotate secrets if necessary.
The same threat actor claimed on Telegram that they had discussed a $2 million ransom demand with Vercel. Attribution remained uncertain because actors linked to recent ShinyHunters-associated attacks reportedly denied involvement in this incident.
A threat actor using the name "ShinyHunters" posted on a hacking forum claiming to sell allegedly stolen Vercel data, including access keys, source code, database data, internal deployment access, and API keys. The actor also shared a text file with 580 employee-related records and a screenshot purportedly showing an internal Vercel Enterprise dashboard, though the materials were not independently verified.
Context AI said its Context AI Office Suite application was breached in March and that attackers likely compromised OAuth tokens for some consumer users. The disclosure provides upstream context for how the Vercel employee account compromise may have occurred.
Vercel said the intrusion chain began when a Context.ai employee was infected with Lumma Stealer malware in February, reportedly via malware disguised as Roblox cheats. The infection allegedly led to compromise of Context.ai’s AWS environment and OAuth tokens, including one tied to a Vercel employee’s Google Workspace account.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
32 references tracked. Mallory keeps watching after this page renders.
dispatch.thorcollective.com
Open sourcescworld.com
Open sourcevercel.com
Open sourcecyberscoop.com
Open sourcebankinfosecurity.com
Open sourcegovinfosecurity.com
Open sourcebleepingcomputer.com
Open sourcenews.ycombinator.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.