Heroku

Heroku

The popular cloud platform, Heroku, had to forcibly reset some user passwords after they were targeted in a security breach.

The hackers obtained access to a Heroku database and downloaded stored customer GitHub integration OAuth tokens by leveraging a compromised token for a Heroku machine account.

Heroku worked with GitHub, threat intelligence vendors, and even law enforcement to investigate the incident.

In response to the incident, Heroku rotated all config var creds, changed passwords, and rotated API Key and 2FA.

Source: https://therecord.media/heroku-breach-salesforce-oauth-github/

"id": "HER12557522",
"linkid": "heroku",
"type": "Breach",
"date": "05/2022",
"severity": "100",
"impact": "6",
"explanation": "Attack threatening the economy of a geographical region"
Great! Next, complete checkout for full access to Rankiteo Blog.
Welcome back! You've successfully signed in.
You've successfully subscribed to Rankiteo Blog.
Success! Your account is fully activated, you now have access to all content.
Success! Your billing info has been updated.
Your billing was not updated.