Skip to content
Techzine Global
  • Home
  • Topstories
  • Topics
    • Analytics
    • Applications
    • Collaboration
    • Data Management
    • Devices
    • Devops
    • Infrastructure
    • Privacy & Compliance
    • Security
  • Insights
    • All Insights
    • Agentic AI
    • Analytics
    • Cloud ERP
    • Generative AI
    • IT in Retail
    • NIS2
    • RSAC 2025 Conference
    • Security Platforms
    • SentinelOne
  • More
    • Become a partner
    • About us
    • Contact us
    • Terms and conditions
    • Privacy Policy
  • Techzine Global
  • Techzine Netherlands
  • Techzine Belgium
  • Techzine TV
  • ICTMagazine Netherlands
  • ICTMagazine Belgium
Techzine » News » Security » More than 5,000 GitLab instances still vulnerable to account takeover
2 min Security

More than 5,000 GitLab instances still vulnerable to account takeover

Floris Hulshoff PolJanuary 25, 2024 10:23 amJanuary 25, 2024 10:23 am
More than 5,000 GitLab instances still vulnerable to account takeover

5,379 GitLab instances are still at risk. These instances may be affected by the recently discovered GitLab account vulnerability. ShadowServer research shows that accounts can still be taken over.

Recently, GitLab was affected by the critical vulnerability CVE-2023-7028. GitLab has since fixed this with a patch. However, ShadowServer research shows that many users have yet to install this patch. Potential risks include supply chain attacks, disclosure of proprietary code, API key leaks and other malicious activities.

Most vulnerable instances are in the U.S., totaling 964, followed by Germany (730), Russia (721), China (503), France (298), the UK (122), India (117) and Canada (99). However, no specific breaches have been reported at the time of writing.

Een schermafbeelding van een website met een kaart van de wereld.

Features CVE-2023-7028

This vulnerability for GitLab instances allows attackers to perform a so-called zero-click attack to take control of instances.

This vulnerability allows hackers to send password reset emails for an attacked GitLab account to an email address they control. This way, they can then change the password and take over the account. However, when 2FA is enabled, this is blocked.

Fixes already released for some time

The problem occurs in GitLab Community and Enterprise Edition version 16.1 for 16.1.5, version 16.2 for 16.2.8, version 16.3 for 16.3.6, version 16.4 for 16.4.4, version 16.5 for 16.5.6, version 16.6 for 16.6.4 and version 16.7 for 16.7.2.

Two weeks ago, patches were released for versions 16.7.2, 16.5.6 and 16.6.4, as well as backporting patches for versions16.1.6, 16.2.9 and 16.3.7.

GitLab urges companies to still check their systems after implementing the updates for possible changes to their development environment, including source code and potentially modified files.

Also read: GitLab accounts vulnerable to takeover, patch available

Tags:

account takeover / CVE-2023-7028 / GitLab / instance

"*" indicates required fields

This field is for validation purposes and should be left unchanged.

Stay tuned, subscribe!

Nieuwsbrieven*

Related

Large-scale GitLab scan reveals more than 17,000 leaked secrets

Chrome vulnerability allowing account takeover fixed

More than 178,000 SonicWall firewalls vulnerable to simple DoS attack

GitLab accounts vulnerable to takeover, patch available

Editor picks

OpenSearch is enterprise-ready with long-term support and version 3.6

The OpenSearch Software Foundation has announced a long-term support ...

‘Nvidia wants to acquire a PC manufacturer like Dell or HP’

A rumor suggests that Nvidia has been negotiating for over a year to ...

ASUS ZenScreen OLED MQ16FC review: high-fidelity mobility

The ASUS ZenScreen OLED MQ16FC is geared towards professionals on the...

Rust enters the Linux kernel, but its adoption is leveling off

A milestone for Rust: version 7.0 of the Linux kernel has been releas...

Techzine.tv

How JFrog secures binaries in the age of AI coding assistants

How JFrog secures binaries in the age of AI coding assistants

How Ansible becomes the execution layer for agentic AI

How Ansible becomes the execution layer for agentic AI

AI creates brand new attack surfaces in cloud security

AI creates brand new attack surfaces in cloud security

Inside AIDA Cruises' massive floating data centers

Inside AIDA Cruises' massive floating data centers

Read more on Security

NTT Research wants to accelerate innovation with Scale Academy: SaltGrain is the first result
Top story

NTT Research wants to accelerate innovation with Scale Academy: SaltGrain is the first result

Attribute-based encryption at the data layer

Sander Almekinders 2 days ago
Security by Design prevents higher bills
Top story

Security by Design prevents higher bills

Those who build in security only after the fact pay up to fifteen times the original cost. That’s why a str...

Berry Zwets 2 days ago
NIST updates NVD: not every CVE will be scrutinized

NIST updates NVD: not every CVE will be scrutinized

The number of vulnerabilities is becoming unmanageable. The U.S. security authority NIST is therefore updatin...

Erik van Klinken 1 day ago
AI agents on GitHub leak API keys via prompt injection

AI agents on GitHub leak API keys via prompt injection

Three popular AI agents on GitHub Actions are vulnerable to so-called "Comment and Control" attacks. These ar...

Erik van Klinken 1 day ago

Expert Talks

Anthropic’s Mythos preview: why the human layer matters more, not less

Anthropic’s Mythos preview: why the human layer matters more, not less

Anthropic has announced Anthropic’s Mythos Preview, a frontier mode...

Why SAST is growing in importance in the age of AI-generated source code

Why SAST is growing in importance in the age of AI-generated source code

Vibe coding is rising astonishingly quickly, but even developers who ...

Infosecurity Europe announces first wave of keynote speakers for 2026

Infosecurity Europe, the most influential information security event...

Better connected business technology is essential for prosperity in the Netherlands 

According to PwC, the Netherlands ranks fourth in Europe for producin...

Tech calendar

Southeast Asia AI Application Summit 2026

April 23, 2026 Bangkok

SAS Innovate 2026

April 27, 2026 Grapevine

Team '26

May 5, 2026 Anaheim

Knowledge 26

May 5, 2026 Las Vegas

GISEC GLOBAL 2026

May 5, 2026 DUBAI

Red Hat Summit

May 11, 2026 Atlanta

Whitepapers

Experience Synology’s latest enterprise backup solution

Experience Synology’s latest enterprise backup solution

How do you ensure your company data is both secure and quickly recove...

How to choose the right Enterprise Linux platform?

How to choose the right Enterprise Linux platform?

"A Buyer's Guide to Enterprise Linux" comprehensively analyzes the mo...

Enhance your data protection strategy for 2025

The Data Protection Guide 2025 explores the essential strategies and...

Strengthen your cybersecurity with DNS best practices

The white paper "DNS Best Practices" by Infoblox presents essential g...

Techzine Global

Techzine focusses on IT professionals and business decision makers by publishing the latest IT news and background stories. The goal is to help IT professionals get acquainted with new innovative products and services, but also to offer in-depth information to help them understand products and services better.

Follow us

Twitter
LinkedIn
YouTube

© 2026 Dolphin Publications B.V.
All rights reserved.

Techzine Service

  • Become a partner
  • Advertising
  • About Us
  • Contact
  • Terms & Conditions
  • Privacy Statement