CYBERSECURITYTRACKER
TRACKING6,506 stories in this site build1,309 vulnerability news stories in this site build
Permanent story citation

Coder's registry infrastructure compromised to push malicious modules

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 5665

As cited

Copy frozen at (site build).

breaches incidents

Coder's registry infrastructure compromised to push malicious modules

Attackers compromised Coder's Cloudflare infrastructure and inserted malicious registry servers to distribute Terraform modules containing credential-stealing code. The attack targeted the infrastructure used to deliver these modules to downstream users.

Why it matters: Organizations using Coder's Terraform modules are at immediate risk of credential theft if they pulled affected versions; practitioners should audit their module consumption and verify the integrity of deployed infrastructure code.

Source published
First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

breaches incidents

Coder's registry infrastructure compromised to push malicious modules

Attackers compromised Coder's Cloudflare infrastructure and inserted malicious registry servers to distribute Terraform modules containing credential-stealing code. The attack targeted the infrastructure used to deliver these modules to downstream users.

Why it matters: Organizations using Coder's Terraform modules are at immediate risk of credential theft if they pulled affected versions; practitioners should audit their module consumption and verify the integrity of deployed infrastructure code.

VendorsCloudflare
Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary