Mercedes-Benz recently suffered a data breach that exposed internal source code and other proprietary information after an employee authentication token was accidentally left in a public GitHub repository.
The breach was discovered in 2024 by researchers at cybersecurity firm RedHunt Labs during a routine internet scan.
The publicly accessible token provided unrestricted access to Mercedes’ private GitHub Enterprise database, allowing anyone to download sensitive intellectual property.