Tag

Shinyhunters

All articles tagged with #shinyhunters

Canva Counted Among ~100 Victims in Shiny Hunters Credential theft
technology29 days ago

Canva Counted Among ~100 Victims in Shiny Hunters Credential theft

The Register reports that Canva is among about 100 targets affected by the Shiny Hunters credential-theft operation, with the piece listing numerous advertising-tech vendors and the types of data and cookies involved. The broad scope underscores a sizable attack surface across the ad-tech ecosystem and highlights the need for strong credential hygiene and monitoring for suspicious activity across partnered platforms.

ShinyHunters Claims Massive Salesforce Data Breach and Extortion
cybersecurity4 months ago

ShinyHunters Claims Massive Salesforce Data Breach and Extortion

An extortion group called ShinyHunters, along with associated groups, has launched a website leaking data from 39 companies affected by Salesforce breaches, threatening to release personal data unless ransom demands are met. The attacks involved voice phishing and OAuth token theft, impacting major corporations like Google, Disney, and IKEA, with the group warning of further extortion campaigns.

Google Addresses Security Warnings Amid Hacker Threats and Data Breaches
technology5 months ago

Google Addresses Security Warnings Amid Hacker Threats and Data Breaches

ShinyHunters, a cybercrime group known for data breaches and now employing voice-based social engineering tactics like vishing, has targeted major companies including Salesforce, affecting millions of users. The group has links with other hacking groups and is involved in selling stolen data and offering ransomware services. Protecting against such attacks involves vigilance, employee training, and enhanced security measures like multi-factor authentication. The rise of AI-generated deepfakes makes these scams more sophisticated and harder to detect.

Google Alerts 2.5 Billion Gmail Users to Change Passwords After Security Breach
technology6 months ago

Google Alerts 2.5 Billion Gmail Users to Change Passwords After Security Breach

Google has issued an emergency warning to Gmail users following a cyber threat linked to a Salesforce data breach, with hackers exploiting stolen data through social engineering and impersonation tactics. The threat is associated with the notorious cybercriminal group ShinyHunters, which has targeted major organizations and stolen vast amounts of data. Users are advised to enhance their security by updating passwords and enabling two-factor authentication to mitigate risks.

technology6 months ago

Google Data Breach Affects 2.5 Billion Gmail Users

Google confirmed a data breach affecting up to 2.5 billion users, linked to the ShinyHunters ransomware group, which compromised a Salesforce database containing mostly public business information. The breach occurred in June but was only disclosed after security experts identified the data loss. Google responded quickly, but the incident highlights ongoing cybersecurity risks, including social engineering scams targeting users.

Google Reports Hackers Breached Internal Salesforce System
technology6 months ago

Google Reports Hackers Breached Internal Salesforce System

Google announced that the hacking group ShinyHunters breached one of its Salesforce databases containing contact information for small and medium-sized businesses, but the hackers only accessed publicly available data for a brief period. The group is known for social engineering attacks and has targeted other major companies this year, often demanding ransom after data exfiltration.

AT&T Paid Hacker $370,000 to Erase Stolen Customer Data
cybersecurity1 year ago

AT&T Paid Hacker $370,000 to Erase Stolen Customer Data

AT&T paid a hacker $370,000 in bitcoin to delete stolen customer data, negotiating through an intermediary after the hacker initially demanded $1 million. The hacker provided a video as proof of deletion, but there are concerns that some data excerpts may still exist. The breach is linked to the ShinyHunters group, which also compromised Ticketmaster and Santander Bank using stolen credentials from a third-party cloud storage company.

"AT&T Paid Hacker $370K to Erase Stolen Customer Data"
cybersecurity1 year ago

"AT&T Paid Hacker $370K to Erase Stolen Customer Data"

AT&T paid a hacker $370,000 to delete stolen call records of tens of millions of customers. The hacker, part of the ShinyHunters group, provided proof of deletion. The breach, involving unsecured Snowflake cloud storage, affected over 150 companies. The hacker responsible for the breach, John Erin Binns, was arrested in Turkey for an unrelated 2021 T-Mobile hack. Despite the payment, some data may still be at risk.

"Ticketmaster Data Breach Exposes Millions, Sparks Lawsuits"
cybersecurity1 year ago

"Ticketmaster Data Breach Exposes Millions, Sparks Lawsuits"

Ticketmaster and several other Snowflake customers have been hacked, with threat actors obtaining credentials through info-stealing malware or purchasing them online. The hacking group ShinyHunters has claimed responsibility, seeking large sums for the stolen data. The breaches highlight the importance of multifactor authentication (MFA), which was not in place for the compromised accounts. Snowflake and security firms Mandiant and Crowdstrike are investigating, with no evidence yet of a vulnerability in Snowflake's platform.