Home / Companies / CircleCI / Blog / Post Details
Content Deep Dive

CircleCI incident report for January 4, 2023 security incident

Blog post from CircleCI

Post Details
Company
Date Published
Author
Rob Zuber
Word Count
2,440
Company Posts That Month
2
Language
English
Hacker News Points
-
Post removed?
No
Summary

In early January 2023, CircleCI disclosed a security incident involving the compromise of a GitHub OAuth token and subsequent unauthorized access to some of its systems, affecting customer data. A malware attack on an employee's laptop enabled the theft of session cookies, allowing attackers to impersonate the employee and exfiltrate encrypted data and keys from production systems. In response, CircleCI conducted a thorough investigation with third-party specialists, rotated all potentially compromised tokens, and implemented additional security measures, such as enhanced monitoring and restricted access to production environments. Customers were advised to rotate their secrets and check for suspicious activity between mid-December 2022 and early January 2023. The company emphasized the importance of continuous security improvements and customer collaboration to prevent future incidents, committing to adopting more aggressive security practices and making advanced security features more accessible to customers.

Trends Found in this Post
Trend Post Mentions Total Month Mentions Posts Companies MoM
Secrets Management 11 675 79 48 +107%
MCP 1 10 5 3 +233%
Observability 1 1,049 196 65 +41%
Platform Engineering 1 224 44 29 +59%
Use This Data

Use this post, company, and trend context to find content marketing opportunities, perform competitive analysis, or address product feature gaps via the Plushcap MCP server or the Plushcap API.