Tag

Shinyhunters

All articles tagged with #shinyhunters

Canvas breach ends as hackers delete stolen data after deal
technology15 days ago

Canvas breach ends as hackers delete stolen data after deal

Instructure, the company behind the Canvas learning platform, says it reached a deal with the hackers (ShinyHunters) responsible for a major breach, secured the stolen data back, and obtained digital proof that remaining copies were destroyed via shred logs. The incident compromised student IDs, email addresses, names and messages for thousands of schools and hundreds of millions of people, though no passwords or financial data were found. Canvas was taken offline during the investigation, and the company is conducting forensic work and hardening its systems while students faced finals-related disruptions.

Canvas breach: hackers' data deletion confirmed after deal
technology16 days ago

Canvas breach: hackers' data deletion confirmed after deal

Instructure says it reached an agreement with the hackers behind the Canvas breach, returned the stolen data, and obtained digital confirmation that remaining copies were destroyed, though there’s no absolute certainty data is fully erased. The incident, claimed by ShinyHunters, affected about 9,000 schools and up to 275 million individuals, exposing student IDs, names, emails and messages and briefly disrupting Canvas access during investigations and exams; the company will continue forensic analysis and system hardening.

Hackers Take Down Canvas LMS, Disrupting Finals Across U.S. Colleges
technology20 days ago

Hackers Take Down Canvas LMS, Disrupting Finals Across U.S. Colleges

A cyberattack on Instructure's Canvas learning-management system knocked the platform offline for thousands of schools and universities across the U.S., with the ShinyHunters group claiming responsibility and threatening data leaks; exams and finals were canceled at several campuses as the outage persisted, but Canvas gradually returned for most users by nightfall and investigations continued.

ShinyHunters hijack Penn Canvas, threaten data dump over ransom
technology20 days ago

ShinyHunters hijack Penn Canvas, threaten data dump over ransom

ShinyHunters took Penn’s Canvas offline, claiming a vulnerability in Instructure and demanding a settlement to prevent a data leak, with a May 12, 2026 deadline; the group says it has access to hundreds of millions of user records, including Penn emails, names, Penn IDs, and course enrollments, and Penn is investigating with Instructure and law enforcement while other institutions are affected.

Extortion group claims 280 million education records stolen in Canvas breach
cybersecurity22 days ago

Extortion group claims 280 million education records stolen in Canvas breach

A hacker group called ShinyHunters claims it stole 280 million student and staff records from 8,809 schools, districts, and online education platforms through a breach of Instructure's Canvas, exposing names, email addresses, and private messages; the alleged list of affected institutions hasn’t been independently verified, universities are assessing potential impact, and Instructure hasn’t publicly responded.

Vercel breach exposes customer data via compromised AI tool
security1 month ago

Vercel breach exposes customer data via compromised AI tool

Vercel confirmed a security incident where a compromised third party AI tool with a Google Workspace OAuth app exposed employee names, email addresses, and activity timestamps for a limited subset of customers; the attackers, linked to ShinyHunters, posted data online and Vercel warns hundreds of users across many organizations could be affected. Admins should review activity logs, rotate environment variables, and vet the compromised app for suspicious usage to detect malicious activity.

GTA 6 Hack Sparks Ransom Demands After Third-Party Breach
technology1 month ago

GTA 6 Hack Sparks Ransom Demands After Third-Party Breach

A ransomware group called ShinyHunters breached Rockstar Games through Anodot, a third‑party analytics provider, gaining access to Rockstar’s Snowflake data and threatening to leak it unless paid; Rockstar says only limited non‑material company information was accessed and players aren’t affected, though the incident underscores ongoing ransomware risks for game studios and their vendors.

Rockstar Games suffers second breach in three years as hackers threaten leak, but company downplays impact
technology1 month ago

Rockstar Games suffers second breach in three years as hackers threaten leak, but company downplays impact

Hackers claiming to be ShinyHunters breached Rockstar Games via a third-party cloud provider, threatening to publish stolen material unless paid; Rockstar says the incident involved only a limited amount of non-material information and has no impact on players or operations, marking a second breach for the company in three years.

Ransomware threat targets Rockstar Games as ShinyHunters set April 14 deadline
technology1 month ago

Ransomware threat targets Rockstar Games as ShinyHunters set April 14 deadline

Hacker group ShinyHunters says it breached Rockstar Games and has given a deadline of April 14 to pay or face data leaks, focusing on non-material corporate assets; Rockstar disputes the severity, stating only data from a third-party breach was accessed and players aren’t affected, though marketing materials could surface ahead of GTA VI’s release.

Hackers threaten to leak Rockstar data after second breach in three years
technology1 month ago

Hackers threaten to leak Rockstar data after second breach in three years

A hacker group named ShinyHunters claims to have breached Rockstar Games’ systems via a third‑party data exposure and threatens to leak stolen data unless paid, with a deadline of 14 April 2026; Rockstar says only a limited amount of non-material information was accessed and there is no impact on players. The incident marks Rockstar’s second breach in three years and comes as GTA VI development remains costly and tightly controlled.

gaming1 month ago

GTA 6 Hackers Threaten Public Data Dump After Unmet Demands

Hackers from the ShinyHunters group say they will publish stolen GTA 6 data online because their demands have not been met. Rockstar Games confirms a breach but downplays its significance, saying only a limited amount of non-material information was accessed and it will not affect development or players. This is GTA 6’s second breach during development, following 2022 leaks of over 90 in-game videos. GTA 6 is slated for PS5 and Xbox Series X|S on November 19, 2026, with no PC date announced.

Rockstar hack targets corporate data, players untouched
gaming1 month ago

Rockstar hack targets corporate data, players untouched

Rockstar Games confirmed a breach via a third‑party provider, with the hacking group ShinyHunters saying it gained access to Snowflake data and demanding a ransom by April 14. The company says the compromised data was limited in scope and has no impact on its organization or players; it’s unclear exactly what data was affected, but it appears to be corporate data rather than player information, potentially including financials or contracts. This follows a notorious GTA VI leak in 2022.

Rockstar Games confirms third-party breach as hackers threaten data leak and ransom
cybersecurity1 month ago

Rockstar Games confirms third-party breach as hackers threaten data leak and ransom

The ShinyHunters hacking group claims Rockstar Games’ cloud systems were accessed in a third-party breach, warning they have until April 14 to respond or the data will be leaked. Rockstar confirms only a limited amount of non-material information was accessed and says there is no impact on the company or its players, noting the incident follows a prior GTA VI leak in 2022.

GTA 6 Studio Hit by Cloud Breach, Hackers Warn of Data Leak Over Ransom
technology1 month ago

GTA 6 Studio Hit by Cloud Breach, Hackers Warn of Data Leak Over Ransom

Hackers ShinyHunters claim Rockstar Games’ cloud environment was breached and threaten to leak a data cache unless a ransom is paid by April 14; Rockstar later confirmed a data breach but said only a limited amount of non-material company information was accessed via a third-party service, with no impact on players or operations. The attackers are believed to have targeted corporate data (contracts, financials, marketing), not user passwords or personal gamer data.

ShinyHunters claim new Salesforce Aura breach via misconfigured guest access
security2 months ago

ShinyHunters claim new Salesforce Aura breach via misconfigured guest access

Salesforce warns customers that misconfigured Experience Cloud guest access can let unauthenticated visitors query CRM data, while ShinyHunters claims to be exploiting a bug with a modified AuraInspector to steal data. Salesforce stresses there is no platform flaw and urges admins to audit guest permissions, set org defaults to private, disable API access for guest profiles, turn off self-registration, and monitor Aura Event Monitoring. Mandiant confirms AuraInspector misuse and notes that detection in logs does not guarantee a breach.