SecBoard
Alle Akteure & Werkzeuge
BedrohungsakteurG1057

ShinyHunters

Alias-Namen: UNC6240, Bling Libra

Meldungen

49

letzte 90 Tage

31

erstmals

05.05.2026

zuletzt

27.08.2026

Profil laut MITRE ATT&CK

ShinyHunters is a cyber criminal collective that has been active since at least 2019 operating under the ShinyCorp persona. ShinyHunters has targeted multiple industries and geographic regions gathering legitimate credentials and personally identifiable information (PII) for resale or extortion of victims. ShinyHunters has been associated with the broader collective called The Community, also known as The Com whose members have also included Scattered Spider and LAPSUS$.

Vollständiges MITRE-Profil

Beschreibung und Alias-Namen stammen aus MITRE ATT&CK®.

Nennungen im Zeitverlauf

09
10
11
12
01
02
03
04
05
06
07
08

Meldungen je Monat, letzte 12 Monate.

Beobachtete Techniken

ATT&CK-Techniken, die in denselben Meldungen benannt sind — nicht das vollständige MITRE-Repertoire.

Schwachstellen im selben Kontext

CVEs, die in denselben Meldungen auftauchen. Ko-Okkurrenz, kein Nachweis einer Ausnutzung.

Gemeinsam genannt

Betroffene Branchen

Meldungen

Carhartt data breach exposes information of 12.9 million accounts

BleepingComputer·27.08.2026

CYFIRMA reports telecom sector faces high cyber risk as China, Russia-linked APT campaigns intensify

Industrial Cyber·25.08.2026

ReliaQuest Confirms ShinyHunters Hack, but Says Impact Was Limited

SecurityWeek·24.08.2026

ReliaQuest confirms failed data-theft attack after ShinyHunters breach

BleepingComputer·24.08.2026

Check Point ransomware report signals rising AI use, faster exploit weaponization, widening threat landscape

Industrial Cyber·17.08.2026

RingCentral data breach exposed info of 1.6 million accounts

BleepingComputer·14.08.2026

ShinyHunters claims Brinks Home breach, threatens to leak stolen data

BleepingComputer·30.07.2026

Health-ISAC warns of rising ShinyHunters data theft attacks on healthcare

BleepingComputer·29.07.2026

ShinyHunters Claims Ernst & Young Hack

SecurityWeek·29.07.2026

Ernst & Young data breach claimed by ShinyHunters extortion gang

BleepingComputer·27.07.2026

ShinyHunters data leaks fuel $2,000 sextortion email scam

BleepingComputer·25.07.2026

Microsoft Maps Year-Long ShinyHunters-Linked Salesforce Data Theft Across Three Paths

The Hacker News·14.07.2026

Medtronic Data Breach Impacts 3.8 Million People

SecurityWeek·03.07.2026

Medtronic notifies customers impacted by ShinyHunters data breach

BleepingComputer·02.07.2026

Nissan discloses employee data breach linked to Oracle zero-day attacks

BleepingComputer·29.06.2026

NAIC says public data stolen in ShinyHunters' PeopleSoft breach

BleepingComputer·29.06.2026

Insurance Regulators Group NAIC Hit in Oracle PeopleSoft Hack

SecurityWeek·29.06.2026

What the Latest ShinyHunters Breaches Reveal About Modern Cyberattacks

SecurityWeek·22.06.2026

Kodak Admits Data Breach After ShinyHunters Hack Claims

SecurityWeek·18.06.2026

Kodak confirms data breach claimed by ShinyHunters extortion gang

BleepingComputer·17.06.2026

Council of Europe investigates ShinyHunters data breach claims

BleepingComputer·15.06.2026

Infinite Campus data breach affects 137,000 school staff accounts

BleepingComputer·15.06.2026

ShinyHunters Claims Council of Europe Hack

SecurityWeek·15.06.2026

Cybergang ShinyHunters attackiert Oracle-PeopleSoft-Schwachstelle

heise Security·15.06.2026

ShinyHunters Uses Oracle Zero-Day to Rampage Higher Ed

Dark Reading·12.06.2026

Google Confirms Exploitation of Oracle PeopleSoft Zero-Day by ShinyHunters

SecurityWeek·12.06.2026

ShinyHunters Exploits Oracle PeopleSoft Zero-Day (CVE-2026-35273) to Breach Universities

The Hacker News·11.06.2026

Oracle Addresses PeopleSoft Vulnerability Amid Reports of Zero-Day Attacks

SecurityWeek·11.06.2026

University of Nottingham Confirms Breach After Hackers Leak Data

SecurityWeek·11.06.2026

Oracle PeopleSoft servers hacked in ShinyHunters data theft attacks

BleepingComputer·10.06.2026

Quellen: BleepingComputer (22), SecurityWeek (15), Dark Reading (4), The Hacker News (3), Industrial Cyber (2), heise Security (1), Securelist (1), KrebsOnSecurity (1)

Alle Angaben auf dieser Seite stammen aus dem Alias-Abgleich der Meldungstexte gegen den MITRE-ATT&CK-Katalog. Beziehungen entstehen rein statistisch: Zwei Einträge gelten als verbunden, wenn sie in derselben Meldung benannt sind. Das ist keine eigenständige Attribution durch SecBoard, und eine Nennung ist kein Nachweis einer Täterschaft.