Skip to main content
See every side of every news story
Published loading...Updated

Red Hat repos raided, claims cybercrew, files stolen

The Crimson Collective claims to have stolen 570GB of sensitive customer data from Red Hat’s GitHub, including detailed infrastructure reports used for extortion attempts.

  • Last month, Red Hat confirmed a security incident tied to Red Hat Consulting but declined to verify claims by Crimson Collective, which says it stole nearly 570GB from 28,000 projects.
  • The Crimson Collective says it found and used authentication tokens and full database URIs to access downstream customers, claiming the intrusion occurred around two weeks ago and extortion attempts yielded only an automated reply.
  • On Telegram the hackers published a directory listing and samples, including about 800 Customer Engagement Reports from 2020–2025 naming clients like Bank of America, T-Mobile, AT&T, Fidelity and Walmart.
  • Red Hat mobilized its incident response team and is working with cybersecurity firms and authorities, advising clients to conduct security posture reviews amid warnings CERs risk downstream customers.
  • Experts warn the incident could erode trust in cloud-based repository services, heightening scrutiny on Red Hat's OpenShift AI flaw and sparking debate on security standards for open-source development.
Insights by Ground AI
Podcasts & Opinions

12 Articles

Think freely.Subscribe and get full access to Ground NewsSubscriptions start at $9.99/yearSubscribe

Bias Distribution

  • 100% of the sources are Center
100% Center

Factuality 

To view factuality data please Upgrade to Premium

Ownership

To view ownership data please Upgrade to Vantage

BleepingComputer broke the news in on Thursday, October 2, 2025.
Sources are mostly out of (0)
News
For You
Search
BlindspotLocal