Skip to main content
Back to overview
Medium

StreamElements confirms third-party data breach after hacker leaks data

Cloud-based streaming company StreamElements confirmed a data breach at a third-party service provider after a threat actor, known as 'victim', leaked samples of stolen data on a hacking forum on March 20, 2025.

Key points

  • 210,000 customers affected.
  • Data leaked by threat actor 'victim' on a hacking forum on March 20, 2025.
  • Exposed data includes full names, addresses, phone numbers, and email addresses.

Connected intelligence

Signal brief

Follow the organization, likely method and potential impact to explore connected Shadow Tier intelligence.

03

Potential impact

Data Exposure

Confidentiality

Published
Mar 20, 2025
Updated
Jun 26, 2026
Confidence
Medium
Evidence
1 source

Structured assessment

Signal analysis

This analysis groups the signal by industry, likely incident action and impacted security area. It helps compare this signal with other published signals without treating the labels as final determinations.

Threat source

Malware activity

Watch ransomware, endpoint compromise and business interruption exposure.

  • Source type: possible insider or internal misuse

Business impact

Potential extortion or operational risk
Impact area
Confidentiality
Likely asset
User or customer data, Server or cloud data store

Mentioned entities

StreamelementsData DisclosureStreamElementsCloud-basedExposed

Quick context

Questions about this signal

What happened in this signal?

Cloud-based streaming company StreamElements confirmed a data breach at a third-party service provider after a threat actor, known as 'victim', leaked samples of stolen data on a hacking forum on March 20, 2025. The breach exposed personal information of 210,000 customers, including full names, addresses, phone numbers, and email addresses. StreamElements stated its own servers were not breached, but older data from a former third-party provider was exposed. The incident reportedly stemmed from an infostealer malware infection on a StreamElements employee in 2023, which granted access to the platform's order management system.

When was this signal reported?

Shadow Tier lists Mar 20, 2025 as the signal date.

Which organization is connected to this signal?

Streamelements is the organization connected to this public signal.

Explore Streamelements
Which impact area is relevant?

This signal is connected to data exposure and breach intelligence based on its reported consequences.

Explore data exposure and breach intelligence