@Saccc_c: Vercel confirms breach — hacker group ShinyHunters selling core source code, internal DB access, and keys for $2 million. Rotate your env vars now.

X AI KOLs Following News

Summary

Vercel has confirmed an intrusion by the hacker group ShinyHunters, who are openly selling core source code, internal database access, and secrets for $2 million. All Vercel users should immediately review and rotate environment variables and related keys.

Vercel has just confirmed that its internal systems were compromised. The hacker group ShinyHunters is publicly auctioning core source code, internal database access, and access keys stolen from Vercel, asking $2 million. All developers using Vercel are advised to inspect and rotate environment variables and related secrets immediately.
Original Article
View Cached Full Text

Cached at: 04/21/26, 08:12 AM

Vercel has just confirmed that its internal systems were breached. The hacker group ShinyHunters is openly peddling Vercel’s core source code, internal database access, and access keys for $2 million. All developers using Vercel should immediately audit and rotate environment variables and related secrets.

Similar Articles

Vercel April 2026 security incident

Lobsters Hottest

Vercel disclosed a security incident involving unauthorized access to internal systems originating from a compromise of Context.ai, a third-party AI tool used by a Vercel employee. Limited customer credentials were compromised, though environment variables marked as sensitive were not accessed; the company is actively investigating with external cybersecurity firms and law enforcement.

Vercel April 2026 security incident

Hacker News Top

Vercel confirmed a security breach affecting a limited subset of customers after threat actors claimed to have stolen data. The breach originated from a compromised employee Google Workspace account via a third-party AI tool (Context.ai), allowing attackers to access unencrypted environment variables and enumerate further access to customer systems.