Close Menu
NCIJ Network NCIJ Network
    What's Hot

    Strohm’s pilot ultra-deepwater TCP flowline to hit the water off Brazil in early 2027

    September 22, 2026

    Trump’s Greenland Deal Is the End of a Pointless Conflict

    September 22, 2026

    Russian strikes on Ukraine kill three as Zelenskyy in US for UN summit | Drone Strikes News

    September 22, 2026
    Facebook X (Twitter) Instagram
    Trending
    • Strohm’s pilot ultra-deepwater TCP flowline to hit the water off Brazil in early 2027
    • Trump’s Greenland Deal Is the End of a Pointless Conflict
    • Russian strikes on Ukraine kill three as Zelenskyy in US for UN summit | Drone Strikes News
    • Caution versus ambition: strategy debate dominates Lib Dem conference | Liberal Democrats
    • UK not ‘on the slide’, Burnham to tell UN as he gears up for first meeting with Trump – UK politics live | Politics
    • Merz’s woes cast doubt over EU’s €2tn budget deal
    • Morphotonics raises €40M to expand its display tech into data centers
    • One Hidden Meta Muse Setting Could Let Attackers Turn the AI Assistant Into a Backdoor
    • About
      • Our Team
      • Editorial Policy
      • Editorial Independence
      • International Support
    • Trust & Standards
      • AI Usage Policy
      • Conflict of Interest Policy
      • Corrections Policy
      • Ethics Policy
      • Fact-Checking Policy
      • Source Protection
    • Get Involved
      • Guide for Sources
      • Support Independent Journalism
    • Legal
      • Cookie Policy
      • Privacy Policy
      • Terms of Use
    Facebook X (Twitter) Instagram
    NCIJ Network NCIJ Network
    Tuesday, September 22
    • Home
    • World
    • Ai
    • Business
    • Politics
    • Health
    • Crypto
    • Science
    • Technology
    • Cybersecurity
    • Defense & Security
    • Economy
    • Energy
    • Europe
    • More
      • Fact Check
      • Investigations
      • Opinion & Analysis
      • Environment
    NCIJ Network NCIJ Network
    Home»Cybersecurity

    CrowdSec Confirms Source Code Stolen in Supply Chain Attack

    NCIJ NETWNCIJ NETWORKBy NCIJ NETWNCIJ NETWORKSeptember 22, 2026 Cybersecurity No Comments2 Mins Read
    Share
    Facebook Twitter LinkedIn Pinterest Email

    French cybersecurity firm CrowdSec has confirmed that approximately 300 private and public repositories were compromised and source code was stolen from them.

    The company provides open source, crowdsourced threat intelligence, including a lightweight security engine to detect and block attacks targeting servers, networks, and applications.

    Last week, the French outfit learned that source code had been stolen from its GitHub repositories in May 2026.

    CrowdSec has confirmed the report, noting that both private and public code was exfiltrated, and that roughly 300 repositories were affected, including approximately 170 private ones.

    “The private part contains the source code for our SaaS console, some AWS Cloud routines, some connectors, and automations,” the company said.

    According to CrowdSec, no credentials or other types of data related to its customers were leaked, and the impact is limited to its own organization.

    Advertisement. Scroll to continue reading.

    “Our team quickly hunted for any token, credential, or sensitive leak that could enable lateral movement but found none so far,” it said.

    Additionally, the cybersecurity firm says that, while valuable, the code stolen from its private repositories cannot be used to cause harm, as it can not replicate its network and can only be used with its data and tools; therefore, it cannot be used out of context.

    “We regularly audited the SaaS source code, and its leakage shouldn’t pose an immediate threat either. Most of the leaked code has evolved significantly over those four months, but we will closely monitor for any abnormal activity,” CrowdSec says.

    The data breach, it explains, was likely a direct result of the May 2026 TanStack supply chain attack, in which TeamPCP published 84 malicious artifacts across 42 TanStack packages.

    Because CrowdSec used a TanStack package in May, the malware used in the campaign likely compromised an API key that allowed the attackers to read its private codebase.

    The leak likely occurred in May, during the short exploitation window, and CrowdSec immediately rotated all potentially affected tokens and credentials.

    Related: Revolut Data Breach: 5 Months, 680 High-Profile Accounts, $3M Ransom

    Related: Brevo Supply Chain Attack Injects Malware Into 100,000 Websites

    Related: Rust Supply Chain Attack Linked to North Korean Hackers

    Related: 23 Million User Records Compromised in Gyazo Data Breach

    attack chain Code Confirms CrowdSec source stolen supply
    NCIJ NETWNCIJ NETWORK
    • Website

    Keep Reading

    One Hidden Meta Muse Setting Could Let Attackers Turn the AI Assistant Into a Backdoor

    Rust Team Members and Popular Crate Owners Targeted via Video Calls

    Microsoft to retire Microsoft 365 Companion apps in December

    RatHat Android Trojan Uses AI for Automation

    CISA alerts of active exploitation of three Linux kernel flaws

    US Proposes AI Incident Alert System in Talks With China, Bessent Says

    Add A Comment
    Leave A Reply Cancel Reply

    Editors Picks

    Strohm’s pilot ultra-deepwater TCP flowline to hit the water off Brazil in early 2027

    September 22, 2026

    Trump’s Greenland Deal Is the End of a Pointless Conflict

    September 22, 2026

    Russian strikes on Ukraine kill three as Zelenskyy in US for UN summit | Drone Strikes News

    September 22, 2026

    Caution versus ambition: strategy debate dominates Lib Dem conference | Liberal Democrats

    September 22, 2026
    Latest Posts

    Google Assistant will disappear from your phone next month

    August 5, 2026

    Pope Leo Will Visit Peru, Where He Lived for Years, in November

    August 5, 2026

    Forget the goals and PBs – just enjoy it | Sport

    August 5, 2026

    Subscribe to News

    Get the latest sports news from NewsSite about world, sports and politics.

    NCIJ Network is an independent digital news platform delivering trusted investigative journalism, European and global news, in-depth analysis, and fact-based reporting with accuracy, transparency, and integrity.

    Facebook X (Twitter) Instagram Pinterest YouTube

    Strohm’s pilot ultra-deepwater TCP flowline to hit the water off Brazil in early 2027

    September 22, 2026

    Trump’s Greenland Deal Is the End of a Pointless Conflict

    September 22, 2026

    Russian strikes on Ukraine kill three as Zelenskyy in US for UN summit | Drone Strikes News

    September 22, 2026

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Type above and press Enter to search. Press Esc to cancel.