Data leak

Acuity Federal Contractor GitHub Repository Breach

πŸ“… 2024-03-07 🏒 Tekton CI/CD; GitHub
Primary Source β†—

Incident Details

IntelBroker breached federal IT contractor Acuity Inc. on 7 March 2024 and claimed to have stolen data from US State Department, DoD, NSA, ICE, USCIS, and other agencies. The stolen data appeared on hacking forums and Telegram in April 2024. Acuity confirmed the breach but characterized the stolen data as ‘old and non-sensitive’ from GitHub repositories. The State Department investigated. Leaked data included thousands of records with government employee PII and internal communications. Acuity provides IT services to multiple US federal agencies.

Technical Details

Initial Attack Vector
Threat actor IntelBroker exploited a vulnerability in Acuity's Tekton CI/CD server to steal GitHub credentials, then accessed government-related repositories
Vendor / Product
Tekton CI/CD; GitHub

Timeline

  1. 2024-03-07 Breach occurred
  2. 2024-04-04 Publicly disclosed