Post-incident review for TanStack npm supply chain ransom incident: No unauthorized access to customer production systems (opens in new tab)
On May 27, we completed our internal investigation of the and confirmed our initial findings: The incident was strictly limited to Grafana Labs' GitHub environment. There was no unauthorized access to customer production systems, and the Grafana Cloud platform was not affected. For an additional, independent audit, we engaged Mandiant, a leader in cybersecurity and incident response. We provided them with API access to Grafana Labs' log environment to conduct queries across our systems for th...
Read the original article