The continuous integration and delivery platform notified users that an unauthorized third party gained access to a legacy infrastructure backup. The compromise exposed system access tokens, build scripts, and hashed passwords of enterprise development clients.