Grafana refuses to pay ransom after codebase theft

2026-05-18T20:51:56Z76ec2bb26d0352e72cdd1ca7436d987c9ef251eb11cb2df7b5ad2ce9bcb22e7b
AI and financeCISACisco SD‑WANGrafanaOpenAIPyPITHORChainTanStackcode theftcryptocurrency theftexploited bugmacOSnpmpatchingprivacyransomwaresupply chainvulnerability

What happened

Multiple high-impact incidents across software, cloud and crypto were reported: Grafana confirmed a codebase theft and said it will not pay the ransom; THORChain suffered a compromise of one of six vaults losing about $10.7M; CISA ordered all federal agencies to apply a Cisco SD‑WAN patch after an actively exploited authentication‑bypass bug; OpenAI and others are responding to a TanStack/npm/PyPI supply‑chain campaign (OpenAI urged macOS updates); and experts warned of privacy risks from a new ChatGPT feature that can link users’ financial accounts.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
therecord_media
Record identifier
76ec2bb26d0352e72cdd1ca7436d987c9ef251eb11cb2df7b5ad2ce9bcb22e7b
Enrichment time
2026-05-18T20:51:56Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.