Grafana Labs security update: Latest on TanStack npm supply chain ransomware incident

Over the weekend, Grafana Labs confirmed a targeted attack by a cybercrime group, which gained unauthorized access to our GitHub repositories and downloaded our codebase.

Our investigation has continued since then, and our CISO published an update on our blog just now. We wanted to make sure you all were informed right away.

We’re continuing to review logs, telemetry, and all available data within company-wide GitHub repos. As part of the team’s standard security practices, we’ll share additional information from our post-incident review when our investigations are complete.