A Chinese threat actor tracked as Red Heron has been attributed to the rapid exploitation of a recently disclosed security vulnerability in Gitea to compromise internet-facing instances as part of a multi-national campaign.”Red Heron scanned 1,386 Gitea instances across seven countries and maintained a separate dataset of 477 Taiwan-based systems,” Acronis Threat Research Unit (TRU) said in an
First seen on thehackernews.com
Jump to article: thehackernews.com/2026/09/red-heron-exploits-gitea-rce-to.html
![]()

