{"id":240912,"date":"2026-05-18T13:42:19","date_gmt":"2026-05-18T13:42:19","guid":{"rendered":"https:\/\/entertainment.runfyers.com\/index.php\/2026\/05\/18\/open-source-tool-maker-grafana-labs-says-hackers-stole-its-code-refuses-to-pay-ransom-techcrunch\/"},"modified":"2026-05-18T13:42:19","modified_gmt":"2026-05-18T13:42:19","slug":"open-source-tool-maker-grafana-labs-says-hackers-stole-its-code-refuses-to-pay-ransom-techcrunch","status":"publish","type":"post","link":"https:\/\/entertainment.runfyers.com\/index.php\/2026\/05\/18\/open-source-tool-maker-grafana-labs-says-hackers-stole-its-code-refuses-to-pay-ransom-techcrunch\/","title":{"rendered":"Open source tool maker Grafana Labs says hackers stole its code, refuses to pay ransom | TechCrunch"},"content":{"rendered":"<p> <br \/>\n<\/p>\n<div>\n<p id=\"speakable-summary\" class=\"wp-block-paragraph\">Grafana Labs, the maker of its eponymous popular open source web visualization software, confirmed it had been hacked but that it refused to pay the hackers who had threatened to release the company\u2019s codebase.<\/p>\n<p class=\"wp-block-paragraph\">In <a rel=\"nofollow\" href=\"https:\/\/x.com\/grafana\/status\/2055827123236171827\" target=\"_blank\">a series of posts<\/a> on social media, the lab said its investigation found that the hackers had abused a stolen token credential that allowed access to the company\u2019s GitLab environment, which it uses for code development. The token did not provide access to customer records or financial data, but allowed the hackers to obtain the company\u2019s repositories of source code. The company has since invalidated the token and added additional security measures to prevent a repeat incident.<\/p>\n<p class=\"wp-block-paragraph\">\u201cThe attacker attempted to blackmail us, demanding payment to prevent the release of our codebase,\u201d the company said.<\/p>\n<p class=\"wp-block-paragraph\">Grafana\u2019s code is open source and public, meaning anyone can download the software and edit its code before running it on their own machines. It\u2019s unclear if the hackers stole any proprietary code or information. A spokesperson for the company did not immediately return a request for comment.<\/p>\n<p class=\"wp-block-paragraph\">The incident contrasts with the recent hack at education tech giant Instructure, which last week <a href=\"https:\/\/techcrunch.com\/2026\/05\/12\/instructure-strikes-deal-with-hackers-who-breached-it-twice\/\" target=\"_blank\" rel=\"noopener\">\u201creached an agreement\u201d to pay the hackers<\/a> who had compromised its network twice in recent weeks. The hackers had demanded an unspecified ransom, threatening to release stolen data about staff and students who use its software <a href=\"https:\/\/techcrunch.com\/2026\/05\/07\/hackers-deface-school-login-pages-after-claiming-another-instructure-hack\/\" target=\"_blank\" rel=\"noopener\">following a massive data breach and a subsequent website defacement<\/a>.<\/p>\n<p class=\"wp-block-paragraph\">While in Grafana\u2019s case, no customer data was taken, the company cited the FBI\u2019s long-standing advice urging victims not to pay hackers, as cooperating with hackers does not guarantee that they would return stolen data or refrain from publishing it later. Critics also say paying cybercriminals helps to fund future cyberattacks.<\/p>\n<p class=\"wp-block-paragraph\">Grafana said its investigation was ongoing and will share its findings once its probe concludes.<\/p>\n<\/div>\n<p><em>When you purchase through links in our articles, <a href=\"https:\/\/techcrunch.com\/techcrunch-affiliate-monetization-standards\/\" target=\"_blank\" rel=\"noopener\">we may earn a small commission<\/a>. This doesn\u2019t affect our editorial independence.<\/em><\/p>\n<p><br \/>\n<br \/><a href=\"https:\/\/techcrunch.com\/2026\/05\/18\/open-source-tool-maker-grafana-labs-says-hackers-stole-its-code-refuses-to-pay-ransom\/\" target=\"_blank\" rel=\"noopener\">Source link <\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Grafana Labs, the maker of its eponymous popular open source web visualization software, confirmed it had been hacked but that it refused to pay the hackers who had threatened to release the company\u2019s codebase. In a series of posts on social media, the lab said its investigation found that the hackers had abused a stolen [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":240913,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[14],"tags":[],"class_list":{"0":"post-240912","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-tech"},"_links":{"self":[{"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/posts\/240912","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/comments?post=240912"}],"version-history":[{"count":0,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/posts\/240912\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/media\/240913"}],"wp:attachment":[{"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/media?parent=240912"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/categories?post=240912"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/tags?post=240912"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}