Tag

Vercel

All articles tagged with #vercel

Vercel Breach Linked to Context AI Hack Exposes Limited Customer Credentials
technology1 month ago

Vercel Breach Linked to Context AI Hack Exposes Limited Customer Credentials

Vercel disclosed a security incident linked to the Context.ai compromise that allowed an attacker to hijack an employee’s Google Workspace account and access some non-sensitive internal environments and environment variables; sensitive secrets remained encrypted, but a limited subset of customers reportedly had credential exposure, triggering immediate rotation and ongoing investigations with Mandiant and Context.ai, as the company rolls out dashboard updates and advises admins to review logs and rotate non-sensitive secrets.

Vercel breach exposes customer data via compromised AI tool
security1 month ago

Vercel breach exposes customer data via compromised AI tool

Vercel confirmed a security incident where a compromised third party AI tool with a Google Workspace OAuth app exposed employee names, email addresses, and activity timestamps for a limited subset of customers; the attackers, linked to ShinyHunters, posted data online and Vercel warns hundreds of users across many organizations could be affected. Admins should review activity logs, rotate environment variables, and vet the compromised app for suspicious usage to detect malicious activity.

Vercel Breach: Hackers Claim to Sell Stolen Data as Company Investigates
technology1 month ago

Vercel Breach: Hackers Claim to Sell Stolen Data as Company Investigates

Vercel disclosed a security incident with unauthorized access to internal systems. A threat actor claiming to be part of ShinyHunters is advertising stolen data for sale, including access keys, source code, and employee records. Vercel says services remain unaffected, is working with incident responders and law enforcement, and has advised impacted customers to review environment variables and rotate secrets; the authenticity of the leaked data and any exposed credentials remain unconfirmed.