Vercel CEO: Vercel security investigation shows attackers obtained account keys by distributing malware, with impact scope exceeding initial assessment.

ME News, April 23 (UTC+8), Vercel CEO Guillermo Rauch posted on X platform that the team conducted an in-depth analysis of a recent security incident. The investigation revealed that threat actors distributed malware on computers to search for keys to Vercel accounts and other service providers. Once the keys were obtained, the attackers performed large-scale operations via the API, focusing on enumerating non-sensitive environment variables. Vercel has expanded collaboration with industry partners such as Microsoft, AWS, and Wiz, and has notified other suspected victims. Currently, Vercel has released multiple product enhancements, and further investigation progress will be updated through security advisories. (Source: ODAILY)
View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
Add a comment
Add a comment
No comments
  • Pinned