Close Menu
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
What's Hot

Don’t let myths run. But Claude is already in Salesforce

Contextual AI hack-related Vercel breach exposes limited customer credentials

OpenAI’s existential questions | Tech Crunch

Facebook X (Twitter) Instagram
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
Facebook X (Twitter) Instagram
Fyself News
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
Fyself News
Home » Contextual AI hack-related Vercel breach exposes limited customer credentials
Identity

Contextual AI hack-related Vercel breach exposes limited customer credentials

By April 20, 2026No Comments2 Mins Read
Share Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Copy Link
Follow Us
Google News Flipboard
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link

Ravi LakshmananApril 20, 2026Cloud security/data breach

Web infrastructure provider Vercel has disclosed a security breach that allowed malicious parties to gain unauthorized access to “certain” Vercel internal systems.

The incident stemmed from a breach of Context.ai, a third-party artificial intelligence (AI) tool used by the company’s employees.

“The attacker used that access to take over the employee’s Vercel Google Workspace account, which allowed the employee to access some Vercel environments and environment variables that were not marked as ‘sensitive,'” the company said in a bulletin.

Vercel said environment variables marked “sensitive” are stored in an encrypted manner so that they cannot be read, and there is currently no evidence to suggest that their values ​​have been accessed by an attacker.

The paper described the attackers behind the incident as “sophisticated” based on their “speed of operation and detailed understanding of the Vercel system.” The company also said it is working with Google’s Mandiant and other cybersecurity companies, as well as reporting to law enforcement and working with Context.ai to better understand the full extent of the breach.

A “limited portion” of its customers were said to have had their credentials compromised, and Vercel contacted them directly and urged them to rotate their credentials immediately. The company is continuing to investigate what data was compromised and will contact customers if it finds further evidence of a breach.

Vercel also advises Google Workspace administrators and Google account holders to review the following OAuth applications:

110671459871-30f1spbu0hptbs60cb4vsmv79i7bbvqj.apps.googleusercontent.com

The following best practices are recommended for additional mitigation:

Vercel has not yet released details such as which systems were compromised, how many customers were affected, or who was behind it, but an attacker using the ShinyHunters persona claimed responsibility for the hack and sold the stolen data for an asking price of $2 million.

“We have put in place extensive safeguards and monitoring. We have analyzed our supply chain and ensured that Next.js, Turbopack, and our many open source projects are safe for our community,” Vercel CEO Guillermo Rauch said in a post on X.

“In response, we are already rolling out new features to the dashboard, including an environment variables overview page and a better user interface for creating and managing sensitive environment variables, to help improve the security posture of all our customers.”


Source link

#BlockchainIdentity #Cybersecurity #DataProtection #DigitalEthics #DigitalIdentity #Privacy
Follow on Google News Follow on Flipboard
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Previous ArticleOpenAI’s existential questions | Tech Crunch
Next Article Don’t let myths run. But Claude is already in Salesforce

Related Posts

Don’t let myths run. But Claude is already in Salesforce

April 20, 2026

$13.74 million hack shuts down authorized Grinex exchange after tip-off

April 18, 2026

Mirai Variant Nexcorium exploits CVE-2024-3721 to hijack TBK DVR and attack DDoS botnet

April 18, 2026
Add A Comment
Leave A Reply Cancel Reply

Latest Posts

Don’t let myths run. But Claude is already in Salesforce

Contextual AI hack-related Vercel breach exposes limited customer credentials

OpenAI’s existential questions | Tech Crunch

12 Month Window | Tech Crunch

Trending Posts

Subscribe to News

Subscribe to our newsletter and never miss our latest news

Please enable JavaScript in your browser to complete this form.
Loading

Welcome to Fyself News, your go-to platform for the latest in tech, startups, inventions, sustainability, and fintech! We are a passionate team of enthusiasts committed to bringing you timely, insightful, and accurate information on the most pressing developments across these industries. Whether you’re an entrepreneur, investor, or just someone curious about the future of technology and innovation, Fyself News has something for you.

Castilla-La Mancha Ignites Innovation: fiveclmsummit Redefines Tech Future

Local Power, Health Innovation: Alcolea de Calatrava Boosts FiveCLM PoC with Community Engagement

The Future of Digital Twins in Healthcare: From Virtual Replicas to Personalized Medical Models

Human Digital Twins: The Next Tech Frontier Set to Transform Healthcare and Beyond

Facebook X (Twitter) Instagram Pinterest YouTube
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
© 2026 news.fyself. Designed by by fyself.

Type above and press Enter to search. Press Esc to cancel.