🚨 Zeabur Allegedly Compromised, Source Code, Cloud Credentials & 612 GB Customer Database Dump Claimed
A threat actor has published details of an alleged compromise of Zeabur, a cloud application deployment platform.
The actor claims to possess:
* Zeabur source code
* PostgreSQL and MongoDB database dumps
* AWS infrastructure secret key
* GCP service account with Project Owner permissions
* Google Workspace administrative access
* GitHub PAT and source-code archive
* Stripe API key
* Kubernetes cluster administrator access
* WireGuard VPN access
Most significantly, the actor claims leaked credentials were used to access Zeabur customer databases, resulting in approximately 612 GB of compressed data being extracted.
Zeabur has an official incident page addressing the security incident.
Analyst Note:
If the claims are accurate, this goes significantly beyond a conventional database leak. Compromise of cloud credentials, Kubernetes administration, source code and customer environments could create substantial supply-chain risk.
The reported access to customer databases is particularly important because the downstream impact may extend beyond Zeabur itself.
The underground actor’s individual claims and the reported 612 GB volume should still be treated as unverified unless independently corroborated.
#
DDW# #
DarkWeb# #
Zeabur# #
DataBreach# #
CloudSecurity# #
SupplyChain# #
ThreatIntelligence#