Login
← All news

Leaked n8n API Tokens Exposed Live Instances to Credential Theft

The Hacker News Security

GitGuardian researchers found 321 n8n instances accepting API tokens exposed in public GitHub commits and demonstrated four ways attackers could use them to access sensitive data and downstream credentials without exploiting a software vulnerability. We scanned public GitHub commits for exposed n8n API tokens and identified 4,576 unique credentials associated with 1,255 hostnames. Of the 896…

Read the full story on The Hacker News https://thehackernews.com/2026/08/leaked-n8n-api-tokens-exposed-live.html
Attacks like this land on ordinary sites far more often than on chosen targets. If you would rather your site never became the story, CrockyHost hosting ships with daily backups, automatic updates and a firewall we manage.