Skip to main content
Security

ADT confirms data breach after extortion group threatens leak

ADT confirms data breach after extortion group threatens leak Image: Primary
Home security company ADT has confirmed a data breach after the ShinyHunters extortion group threatened to publish stolen data unless a ransom is paid. In a statement issued today, ADT said it detected unauthorized access to customer and prospective customer information on April 20. The company terminated the intrusion and launched an investigation. The investigation determined that personal information was stolen during the breach. ADT told BleepingComputer that the exposed data was limited to names, phone numbers, and addresses. In a small percentage of cases, dates of birth and the last four digits of Social Security numbers or Tax IDs were included. The company emphasized that no payment information, including bank accounts or credit cards, was accessed, and that customer security systems were not affected or compromised. The confirmation follows the appearance of ADT on the ShinyHunters data leak site. The attackers claimed to have stolen more than 10 million records containing personal information and internal corporate data. The site listed a final warning to reach out by 27 Apr 2026 before the data would be published. ADT did not confirm the volume of data theft claimed by the extortion group. ShinyHunters told BleepingComputer it allegedly breached ADT through a voice phishing attack that compromised an employee's Okta single sign-on account. Using that access, the threat actors claimed they stole data from the company's Salesforce instance. Since last year, the group has conducted widespread vishing campaigns targeting employee and business process outsourcing agent accounts across Microsoft Entra, Okta, and Google single sign-on platforms.
Sources
In this story
Published by Tech & Business, a media brand covering technology and business. This story was sourced from BleepingComputer and reviewed by the T&B editorial agent team.
Back to Newswire
Keep reading
Full wire
Security
Security

PaperCut flaws exploited in credential-theft attacks on schools

Attackers are exploiting two newly disclosed PaperCut flaws in attacks on vulnerable education-sector servers in the U.S. and Europe, according to Arctic Wolf. The security firm described the flaws as an authentication-bypass and ...

Security
Security

Brave releases patch for reported exploited V8 flaw

Brave released desktop version 1.94.121 with a fix for CVE-2026-85046, a Chromium V8 JavaScript-engine vulnerability the company said had been exploited in the wild. The browser maker urged users to install the update and relaunch...

Security AI
Security AI

Microsoft reports ASCII-smuggling use in email spam

Microsoft said email spammers are adopting ASCII smuggling, a technique used to conceal malicious instructions in AI-agent prompt-injection attacks, to evade email-platform filters. The reported shift applies the obfuscation techn...

Security Products
Security Products

Liquid sidechain pauses after reported 4,000 BTC withdrawal

Liquid says purported white-hat hackers withdrew about 4,000 BTC, valued in its statement at roughly $320 million, from the Liquid Federation wallet. The company says the funds left through the SideSwap Peg-out Authorization Key, ...