Product
Grafana
- First Reported
- Sep 3, 2026
- Latest Reported
- Oct 5, 2026
Reported Context (2)
- Grafana offline cracking. The monitoring stack's database files were inside the exfiltrated object storage. Azazel extracted admin hashes and ran offline cracking against them. The candidate list recovered from earlier CloudSEK Finds Gentlemen Ransomware Affiliate’s Exposed Servers and Stolen Data
- Shellshock, Spring4Shell, Ghostcat, Shiro deserialization, Log4Shell, Grafana and Nexus path traversals, and a Nacos authentication bypass. Chinese-Speaking Operator Used AI Agents to Target Government and Education Systems Across Asia
CVE (8)
Malware (2)
Threat Actors (2)
MITRE ATT&CK (19)
Vendors (5)
Products (24)
Tools (29)
Industries (15)
Countries (5)
Note: Related entities, including threat actors, malware, CVEs, MITRE ATT&CK techniques, vendors, products, tools, countries, and industries, are shown when they appear in the same reporting. Their presence does not necessarily mean they were targeted, compromised, vulnerable, responsible for the activity, or directly involved in the incident.