Red Heron Exploits Gitea RCE to Compromise 13 Organizations Across Six Countries
- Posted on September 14, 2026
- By The Hacker News
- 2 Views
- 1 min read
The Red Heron threat actor has successfully exploited a critical vulnerability in Gitea version control systems, compromising 13 organizations across multiple continents. By leveraging CVE-2026-60004, attackers gained unauthorized access to source code repositories, harvested sensitive credentials, and established persistent footholds within victim infrastructure. This coordinated campaign demonstrates sophisticated lateral movement techniques, highlighting the urgent need for immediate patching and enhanced monitoring of git-based development platforms.
Summary auto-generated by AI from the original publisher's content. Editorial standards.