Page 210 - Red Hat PR REPORT - OCTOBER 2025
P. 210
10/8/25, 3:33 PM Red Hat data breach escalates as ShinyHunters joins extortion
The threat actors claimed to have attempted to extort Red Hat into paying a ransom to
prevent the public disclosure of the data, but received no response.
Red Hat later confirmed to BleepingComputer that the breach affected its GitLab instance,
which was used solely for Red Hat Consulting on consulting engagements.
Soon after the breach was disclosed, threat actors known as Scattered Lapsus$ Hunters
sought to make contact with Crimson Collective.
Yesterday, Crimson Collective announced that it had partnered with Scattered Lapsus$
Hunters to utilize the newly launched ShinyHunters data leak site to continue their
extortion attempts against Red Hat.
https://www.bleepingcomputer.com/news/security/red-hat-data-breach-escalates-as-shinyhunters-joins-extortion/ 2/5

