← Target

2026 Target — ~860 GB internal source code and developer docs leaked (Jan)

2026 Unknown records affected Share on X

Data compromised

Proprietary source code, internal developer documentation, architectural metadata—not customer PII per trade press

Technical writeup

In January 2026, BleepingComputer reported that repositories on a public Gitea instance appeared to contain Target internal code and developer documentation; Security Magazine (Jan 13, 2026) cited Target employees confirming the materials were authentic and the threat actor claiming roughly 860 GB of data. Target removed the files and made its Git server inaccessible; the retailer had not publicly detailed intrusion mechanics at initial reporting. BreachHistory classifies this as corporate source-code exposure with recordsAffected 0 because no attested consumer PII volume was published.

Root cause

Internal Git repositories exposed via Gitea; employees confirmed authenticity (leak vs breach path unclear)

References