Attackers Breached JetBrains Cadence via Unpatched TeamCity, Extracting AWS Credentials

Executive Summary

JetBrains warned Cadence users to immediately revoke or rotate all credentials after attackers exploited a recently disclosed critical vulnerability in TeamCity to breach its environment. The breach resulted in the extraction of AWS credentials used by Cadence executions. Users are urged to review and secure all secrets that may have been accessed.


Intelligence Metadata - Source Publisher: The Hacker News - Published Date: 2026-09-05T16:52:33+00:00 - Category: threat-intel

Original Description: JetBrains is urging Cadence users to revoke and rotate all credentials following a security incident last month in which unidentified threat actors exploited a recently disclosed critical vulnerability in TeamCity to breach its own environment. "Cadence users should immediately revoke or rotate all credentials and secrets that may have been used to run their Cadence executions," JetBrains said.

"We know what we are, but know not what we may be."

— William Shakespeare
Source: The Hacker News