[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fUlBd4lZQaZ3esVV_F-Ea98IuWCvm31TPmdy9TG0lWFk":3},{"article":4,"iocs":46,"watch_terms":51},{"id":5,"title":6,"slug":7,"summary":8,"ai_summary":9,"brief":10,"full_text":11,"url":12,"image_url":13,"published_at":14,"ingested_at":15,"relevance_score":16,"entities":17,"category_id":26,"category":27,"article_tags":30},"f8c63efc-26cd-4ad4-9362-b58214008d45","Vercel Employee's AI Tool Access Led to Data Breach","vercel-employee-s-ai-tool-access-led-to-data-breach-73cb49","Stolen OAuth tokens, which are at the root of these breaches, \"are the new attack surface, the new lateral movement,\" a researcher noted.","A Vercel employee's credentials were compromised, granting attackers access to AI tools and the ability to steal OAuth tokens that led to a data breach. Security researchers highlight that stolen OAuth tokens have become a primary attack vector for lateral movement and unauthorized access. The incident underscores the expanding attack surface created by AI-assisted development tools and token-based authentication.","Vercel employee's compromised AI tool access enabled OAuth token theft and data breach.",null,"https:\u002F\u002Fwww.darkreading.com\u002Fapplication-security\u002Fvercel-employees-ai-tool-access-data-breach","https:\u002F\u002Feu-images.contentstack.com\u002Fv3\u002Fassets\u002Fblt6d90778a997de1cd\u002Fblt3396b116c4a5d80b\u002F69e6744aa61d112dbb7caf20\u002Fallow_access_keyboard_alon_harel_alamy.jpg?width=1280&auto=webp&quality=80&disable=upscale","2026-04-20T21:01:31+00:00","2026-04-20T22:00:15.928192+00:00",7,[18,21,24],{"name":19,"type":20},"Vercel","vendor",{"name":22,"type":23},"OAuth","technology",{"name":25,"type":23},"AI tools","2e06f76c-d5b9-4f54-9eef-4d3447b10730",{"id":26,"icon":11,"name":28,"slug":29},"Breaches","breaches",[31,36,41],{"category":32},{"id":33,"icon":11,"name":34,"slug":35},"2c8f44d4-b56e-47cf-9677-04f22c9ee78d","Identity & Access","identity-access",{"category":37},{"id":38,"icon":11,"name":39,"slug":40},"c5eccf7c-abbc-4bd3-bbed-e6da5cba8e73","Incident Response","incident-response",{"category":42},{"id":43,"icon":11,"name":44,"slug":45},"e7b231c8-5f79-4465-8d38-1ef13aea5a14","Threat Intelligence","threat-intelligence",[47],{"type":48,"value":49,"context":50},"malware","OAuth token theft","Primary attack vector used to compromise systems and enable lateral movement post-breach",[19]]