
Kodak Data Breach by ShinyHunters
Kodak confirmed a security breach after the ShinyHunters extortion gang gained access to some of the company's data. The group claimed to have stolen over 2.2 million records, including customer Personally Identifiable Information (PII) and other internal corporate data.
Signal context
First seen: Jun 17, 2026
Last updated: Jun 24, 2026
Status: Public signal
Key points
- Kodak confirmed the data breach on June 17, 2026.
- ShinyHunters extortion gang claimed responsibility.
- Over 2.2 million records, including customer PII and internal corporate data, were allegedly stolen.
Signal analysis
BetaIt helps compare this signal with other published signals without treating the labels as final determinations.
Likely country: 🇺🇸 United States
inferred from source domains
Watch internet-facing systems, credential abuse and exploit activity.
- Source type: outside the affected organization
Impact area: Confidentiality
Likely asset: User or customer data
- 1 signal in the same sector
- 66 signals with the same likely impact area
- 1 signal linked to this organization/domain
External sources
24 billion stolen records exposed online. Here's what to do | Malwarebyteshttps://www.malwarebytes.com/blog/news/2026/06/24-billion-stolen-records-found-in-giant-data-dump-check-if-youre-affectedPublic source from malwarebytes.com.
Security News Update for June 14, 2026https://cybercecurity.us/2026/06/17/security-news-update-for-june-14-2026/Public source from cybercecurity.us.
Kodak Admits Data Breach After ShinyHunters Hack Claimshttps://www.securityweek.com/kodak-admits-data-breach-after-shinyhunters-hack-claims/Public source from securityweek.com.
Kodak confirms data breach claimed by ShinyHunters extortion ganghttps://www.bleepingcomputer.com/news/security/kodak-confirms-data-breach-claimed-by-shinyhunters-extortion-gang/Public source from bleepingcomputer.com.
Kodak confirms data breach claimed by ShinyHunters extortion gang - BleepingComputerhttps://www.bleepingcomputer.com/tag/breach/Public source from bleepingcomputer.com.
Cybersecurity Daily Briefing: June 17, 2026 - TECHMANIACS.comhttps://techmaniacs.com/2026/06/17/cybersecurity-daily-briefing-june-17-2026/Public source from techmaniacs.com.
Related signals
Grouped by why the signal is relevant.
LastPass confirms data breach in Klue supply chain attack
LastPass announced that hackers accessed customer data from its Salesforce environment after stealing the company's OAuth tokens in a supply chain attack targeting Klue, a third-party market intelligence platform. The unauthorized actor obtained OAuth tokens from Klue, which were then used to access LastPass customer data. Exposed information includes customer names, phone numbers, email addresses, physical addresses, support case information, and sales/CRM-related data. LastPass stated that its core products, services, and infrastructure, including customer vaults, were not affected by this incident. The Icarus extortion group claimed responsibility for the Klue attack.
Snyk impacted by Klue supply chain attack
Snyk, a cybersecurity firm, was affected by a supply chain attack on market intelligence platform Klue. The attack compromised Klue's integration with Salesforce, leading to the exfiltration of business information from Snyk's Salesforce CRM, including sales account data and business contact information such as names, email addresses, job titles, and phone numbers. Snyk stated the intrusion was limited to its Salesforce instance and did not involve its internal systems.
OneTrust impacted by Klue supply chain attack
OneTrust, a cybersecurity firm, was affected by a supply chain attack on market intelligence platform Klue. The attack compromised Klue's integration with Salesforce, leading to the exfiltration of business information from OneTrust's Salesforce CRM, including sales account data and business contact information such as names, email addresses, job titles, and phone numbers. OneTrust stated the intrusion was limited to its Salesforce instance and did not involve its internal systems.
Jamf impacted by Klue supply chain attack
Jamf, a cybersecurity firm, was affected by a supply chain attack on market intelligence platform Klue. The attack compromised Klue's integration with Salesforce, leading to the exfiltration of business information from Jamf's Salesforce CRM, including sales account data and business contact information such as names, email addresses, job titles, and phone numbers. Jamf stated the intrusion was limited to its Salesforce instance and did not involve its internal systems.
Huntress impacted by Klue supply chain attack
Huntress, a cybersecurity firm, was affected by a supply chain attack on market intelligence platform Klue. The attack compromised Klue's integration with Salesforce, leading to the exfiltration of business information from Huntress's Salesforce CRM, including sales account data and business contact information such as names, email addresses, job titles, and phone numbers. Huntress suggested that a threat actor named Icarus might have been responsible for the attack.
HackerOne impacted by Klue supply chain attack
HackerOne, a cybersecurity firm, was among several organizations affected by a supply chain attack on market intelligence platform Klue. The attack compromised Klue's integration with Salesforce, leading to the exfiltration of business information from HackerOne's Salesforce CRM, including sales account data and business contact information such as names, email addresses, job titles, and phone numbers. HackerOne stated the intrusion was limited to its Salesforce instance and did not involve its internal systems.
