Cloud development platform Vercel was hacked


Vercel, a major development platform that hosts and deploys web apps, was compromised, and the hackers are attempting to sell stolen data. A person claiming to be a member of ShinyHunters, which was behind the recent hack of Rockstar Games, posted some data online, including employee names, email addresses, and activity time stamps. Vercel confirmed in a post on X that a “security incident” had occurred, and that it impacted a “limited subset” of its customers. Vercel said that a compromised third-party AI tool was the avenue for attack, though it did not specify which third-party was involved.

Vercel encouraged administrators to review their activity logs for suspicious activity. It also suggested taking steps to “review and rotate environmental variables” as an extra precaution in case API keys, tokens, or other sensitive data were exposed. It ended its security bulletin by saying:

Our investigation has revealed that the incident originated from a third-party AI tool whose Google Workspace OAuth app was the subject of a broader compromise, potentially affecting hundreds of its users across many organizations.

We are publishing the following IOC to support the wider community in the investigation and vetting of potential malicious activity in their environments. We recommend that Google Workspace Administrators and Google Account owners check for usage of this app immediately.



Source link

  • Related Posts

    Premier League Soccer: Stream Everton vs. Liverpool From Anywhere Live

    When to watch Everton vs. Liverpool Sunday, April 19, at 9 a.m. ET (6 a.m. PT). Where to watch Everton vs. Liverpool will air in the US on USA Network.…

    Today’s NYT Connections Hints, Answers for April 20 #1044

    Looking for the most recent Connections answers? Click here for today’s Connections hints, as well as our daily answers and hints for The New York Times Mini Crossword, Wordle, Connections:…

    Leave a Reply

    Your email address will not be published. Required fields are marked *

    You Missed

    Mets’ losing streak reaches 11 games; longest since 2004

    Mets’ losing streak reaches 11 games; longest since 2004

    President Trump says U.S. struck & seized Iranian tanker

    President Trump says U.S. struck & seized Iranian tanker

    This Is Southwest’s New Busiest Airport: Is It Where You Think?

    This Is Southwest’s New Busiest Airport: Is It Where You Think?

    Protesters outside Vancouver’s Lapu Lapu festival marking 1 year after 11 were killed

    Protesters outside Vancouver’s Lapu Lapu festival marking 1 year after 11 were killed

    Half of UK Executives Think AI Will Mean Fewer Jobs

    Trump says U.S. shoots, seizes Iran-bound cargo ship that tried to run blockade – National

    Trump says U.S. shoots, seizes Iran-bound cargo ship that tried to run blockade – National