Skip to content

Red Hat

Disclosed Oct 2, 202511 months agoConfirmed

Official notice

Crimson Collective steals Red Hat consulting GitLab repositories

Red Hat confirmed a security incident involving a GitLab instance used by its consulting business after the Crimson Collective claimed to have stolen about 570GB from 28,000 internal repositories, including around 800 Customer Engagement Reports with customer infrastructure details and tokens. ShinyHunters later joined the extortion.

What is known

People affectedNot stated in the sources we have
DisclosedOct 2, 2025
AttackHacking
Data exposedSource code, Internal documents, Credentials and tokens, Other
SectorTech · US
StatusConfirmed

Sources

Source
Red Hat security updateaccess.redhat.com · The organization
Red Hat confirms security incident after hackers breach GitLab instancebleepingcomputer.com · News
Red Hat data breach escalates as ShinyHunters joins extortionbleepingcomputer.com · News

Notices filed

WhereFiledPeople
ResearchtotalOct 2, 2025
History of this record
  • 2026-09-25 · added · seed source

First seen 2026-09-25 (Research), confirmed by Research. Record counts are as reported. Not legal advice.

Everything about Red Hat

New breaches by email

Wednesdays, only in weeks with newly disclosed breaches, the largest first.

Double opt-in. Unsubscribe any time.