Grafana Labs disclosed that attackers gained unauthorized access to parts of its GitHub environment using compromised workflow token credentials and downloaded portions of the company’s codebase, including some private repositories. The company said its investigation found no evidence that customer data, personal information, production systems, Grafana Cloud infrastructure, or customer operations were affected, and it reported no signs that the stolen code was modified. Grafana also said attackers obtained some internal operational information and business contact details, while the intrusion was confined to development and repository systems.
Grafana later tied the breach to the broader TanStack npm supply-chain compromise, saying malicious packages executed in its CI/CD environment and exfiltrated GitHub workflow tokens, with one token missed during initial rotation and later used to access repositories. The company invalidated compromised credentials, removed or disabled affected workflows, audited repository activity, hardened its GitHub and CI/CD security posture, and notified law enforcement. After the theft, the attackers attempted to extort Grafana by threatening to leak the stolen material; Grafana refused to pay, while external reporting linked the incident to CoinbaseCartel and the wider Shai-Hulud/TeamPCP campaign.

Trace attribution and downstream blast radius.
8 events from the most recent confirmed update back to the earliest known activity.
Grafana later said attackers downloaded not only source code but also some internal operational information and business contact details, while finding no evidence of code modification or impact to production systems. The company said it rotated automation tokens, audited repository activity, hardened CI/CD and GitHub security, and notified federal law enforcement.
On May 19, 2026, Grafana said its GitHub breach was part of the TanStack npm supply-chain compromise attributed to TeamPCP. The company disclosed that a missed GitHub workflow token rotation enabled repository access after the initial response.
After discovering the breach, Grafana invalidated compromised credentials, added security safeguards, and launched a forensic investigation to determine how the token was exposed and what repositories were accessed. Multiple reports say the company also identified the source of the credential leak.
Grafana disclosed on May 16, 2026, that a threat actor used a stolen token to access its GitHub environment and download source code. The company said it found no evidence that customer data, customer systems, or operations were affected.
Grafana said attackers demanded payment on May 16, 2026, threatening to release stolen material from its GitHub environment. The company refused to pay, citing FBI guidance against ransom payments.
Reporting said the data-extortion group CoinbaseCartel listed Grafana Labs on its dark web leak site on May 15, 2026, publicly claiming the attack. This made the incident visible outside the company before fuller technical details emerged.
Grafana said it detected the targeted breach of its GitHub environment on May 11, 2026. The company later linked the intrusion to the TanStack npm supply-chain compromise and a missed workflow token rotation.
Grafana said it first detected suspicious activity related to the compromise on May 1, 2026, during the broader TanStack npm supply-chain incident. The activity was later tied to malicious packages that exfiltrated GitHub workflow tokens.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See attribution and downstream blast radius, and whether this package or vendor reaches your builds.
15 references tracked. Mallory keeps watching after this page renders.
teiss.co.uk
Open sourcecybersecuritynews.com
Open sourcethehackernews.com
Open sourcebleepingcomputer.com
Open sourcehelpnetsecurity.com
Open sourcecybersecuritynews.com
Open sourcethehackernews.com
Open sourceopennet.me
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.