Grafana Labs is a organization tracked across 10 threat clusters and 15 intelligence report mentions on ThreatCluster. First observed November 21, 2025; most recent activity July 8, 2026.
On May 20, 2026, GitHub confirmed a significant security breach involving a poisoned Visual Studio Code (VS Code) extension that compromised an employee's device. The attack, attributed to the TeamPCP hacking group,…
RubyGems has introduced dependency cooldowns in Bundler to mitigate supply chain attacks that exploit newly published packages. This feature delays the installation of packages until they have been available for a…
On May 19, 2026, GitHub announced an investigation into unauthorized access to internal repositories after a malicious Visual Studio Code extension was executed on an employee's device. The attack, attributed to the…
Grafana Labs has issued critical patches for a severe vulnerability, CVE-2025-41115, affecting Grafana Enterprise versions 12.0.0 to 12.2.1. The flaw in the SCIM provisioning feature could enable attackers to escalate…
Grafana Labs has issued critical patches for a severe vulnerability (CVE-2025-41115) in its SCIM provisioning feature, which could enable attackers to escalate privileges or impersonate users. The flaw affects Grafana…
Grafana Labs reported a security incident on May 17, 2026, where an unauthorized attacker accessed its GitHub environment using a compromised token, downloading the company's codebase. The investigation confirmed that…
A severe vulnerability in Grafana Enterprise has been identified, enabling attackers to escalate their privileges. Grafana Labs has issued critical security patches to address this issue, which affects users of the…
Cybercriminals are utilizing the Matrix Push C2 framework to exploit browser notifications for distributing malicious links. This method involves social engineering tactics to trick users into allowing notifications,…
A critical vulnerability in Grafana Enterprise has been identified, allowing attackers to escalate privileges. Grafana Labs has released security patches to address this severe flaw, which affects users of their…
Cybercriminals are utilizing a new command-and-control platform known as Matrix Push C2 to execute phishing and malware attacks via web browsers. This framework leverages browser push notifications, tricking users into…