xCruzo
|
Tech

DevOps breaches hit tech firms in trust chain attacks

Cyber SecurityBrief US ✦ xCruzoAi 🇺🇸🇪🇸
📄 Read Article
DevOps breaches hit tech firms in trust chain attacks
Browse hubs:CarsAviationMarineMoneySportsTech
xCruzo Brief

DevOps breaches are increasingly impacting technology supply chains, according to GitProtect’s DevOps Threats Unwrapped Report 2026. The report identifies technology and software companies as the most frequently targeted sector, and highlights a set of incidents involving Jaguar Land Rover, Disney, Orange, Red Hat, and Nissan. It also points to a flaw that exposed private GitHub repositories associated with Microsoft, Google, IBM, PayPal, and Tencent. Across leading DevOps platforms, incidents rose by 21%, while total disruption time nearly doubled to 9,255 hours. Vendors patched 236 vulnerabilities in 2025, with 59% classified as high or critical. The report argues the main pattern is not only weak perimeter defenses, but misuse of trust inside software development ecosystems. Examples include Jaguar Land Rover’s Atlassian Jira breach via credentials stolen years earlier, taking 350 GB of data, and Red Hat-linked access to roughly 28,000 repositories, later linked to exposure of 21,000 customer records in Nissan’s case.

xCruzo quick-read summary • Source: SecurityBrief US • Read the full article for complete information.
📄 Read Full Article →
xCruzo xCruzo
See your VIN Report in 15 seconds — Free
1 in 5 cars has an open recall. Is yours one of them?
Not the dealer’s report. Yours.
Choose your detail level — free to full.
For the price of a coffee.
Check My VIN — Free
Free · No credit card · Instant results
Link copied ✓