Data leak
Acuity Federal Contractor GitHub Repository Breach
Primary Source βIncident Details
IntelBroker breached federal IT contractor Acuity Inc. on 7 March 2024 and claimed to have stolen data from US State Department, DoD, NSA, ICE, USCIS, and other agencies. The stolen data appeared on hacking forums and Telegram in April 2024. Acuity confirmed the breach but characterized the stolen data as ‘old and non-sensitive’ from GitHub repositories. The State Department investigated. Leaked data included thousands of records with government employee PII and internal communications. Acuity provides IT services to multiple US federal agencies.
Technical Details
- Initial Attack Vector
- Threat actor IntelBroker exploited a vulnerability in Acuity's Tekton CI/CD server to steal GitHub credentials, then accessed government-related repositories
- Vendor / Product
- Tekton CI/CD; GitHub
Timeline
- 2024-03-07 Breach occurred
- 2024-04-04 Publicly disclosed