Skip to main content

Company intelligence

Grafana cybersecurity incidents and threat signals

grafana.com

Grafana logo

This company page brings together public reporting currently associated with Grafana. It reflects signals published by Shadow Tier and should not be read as a complete incident history.

1

Published signals

currently linked to this company

0

Last 28 days

recent published signals

1

Last 90 days

recent published signals

0

High or critical

confidence classifications

June 30, 2026

Latest report

most recent published signal

Company signals

All published signals involving Grafana

Grafana logoUse of stolen credentials or exploit
Medium

Grafana Labs Confirms Source Code Theft and Extortion Attempt

Grafana Labs confirmed that hackers stole its private codebase from a GitHub repository and attempted to extort the company. The breach was linked to a stolen access token, potentially compromised through a known vulnerability or a broader supply chain attack (TanStack campaign). Grafana Labs refused to pay the ransom.

Grafana

FAQ

Questions about Grafana cybersecurity reporting

What does the Grafana page include?

It combines a reviewed organization profile with all current published Shadow Tier signals explicitly linked to Grafana.

Does every mention of Grafana appear here?

No. A signal must contain a reliable company connection and meet the publication criteria; incidental or ambiguous mentions are excluded.

Why can the incident count change?

The page follows current published reporting. Counts change as new evidence is added, classifications are reviewed, or older signals leave the reporting window.