1.6 Million Users’ Data Compromised in RingCentral Breach Linked to ShinyHunters Group

Published:

spot_img

The personal information of 1.6 million individuals appears to have been stolen from the widely used business communications platform RingCentral by a notorious extortion group. The incident occurred in July and was the result of a “sophisticated social engineering campaign,” according to a notice on RingCentral’s website.

Upon detection, the company stated, “we promptly took steps to stop the unauthorized activity and immediately began an investigation with assistance from a leading third-party forensic firm. We have not seen any new unauthorized activity since taking these remediation efforts.”

RingCentral reported that only a limited portion of its customers was affected by the attack, and those individuals were notified directly. The company emphasized, “If you are not contacted by RingCentral, you are not affected. This incident did not impact the core RingCentral platform, and our services continue to operate without disruption.”

While RingCentral did not name the attackers, the ShinyHunters extortion group added the company to its Tor-based leak site in late July, claiming it stole over 623 gigabytes of data. Roughly a week later, as RingCentral did not succumb to the extortionists’ demands, ShinyHunters published a 280GB archive containing the data allegedly stolen from the company.

On Thursday, data breach reporting site HaveIBeenPwned added the leaked information to its database, stating that it includes approximately 1.6 million unique email addresses, accompanied by names, addresses, and phone numbers. RingCentral has yet to confirm the attackers’ claims and the number of potentially impacted individuals. SecurityWeek has emailed RingCentral for a statement on the matter and will update this article if the company responds.

RingCentral is a cloud-based provider of unified communications and contact center solutions, delivering business phone, team messaging, video meetings, and AI-assisted tools for employee collaboration and customer interactions.

Follow Cyber Warriors Middle East for further ransomware, cybercrime and DarkWatch developments.

spot_img

Related articles

Recent articles

OpenAI Launches Inference Residency in UAE to Enhance Local AI Adoption

OpenAI Expands AI Capabilities with Inference Residency in UAE OpenAI has officially launched its Inference Residency program in the United Arab Emirates (UAE), making it...

France’s tax authority confirms data breach affecting over 600,000 individuals and businesses

France’s tax authority has confirmed a data breach that has affected over 600,000 individuals and businesses. The Directorate General of Public Finances (DGFiP) reported...

HoneyMyte APT Group Enhances CoolClient Backdoor with Kernel-Mode Rootkit Capabilities

Introduction The HoneyMyte APT group, also known as Mustang Panda, has recently enhanced its CoolClient backdoor with significant kernel-mode rootkit capabilities. This evolution marks a...

Red Hat releases important security update for gstreamer1-plugins-bad-free in RHEL 8.8

Red Hat has announced an important security update for gstreamer1-plugins-bad-free, specifically targeting users of Red Hat Enterprise Linux (RHEL) 8.8 Update Services for SAP...