# Threat actor offers alleged Azure directory records from major companies

_Monday, August 17, 2026 at 3:35 PM EDT · Security · Latest · Tier 2 — Notable_

![Threat actor offers alleged Azure directory records from major companies — Primary](https://www.bleepstatic.com/content/hl-images/2026/06/29/DataLeak.jpg)

A threat actor calling itself TheHatman is offering employee-directory data allegedly taken from Microsoft Azure tenants used by several large companies, including McDonald's, Gap, Vodafone and Tata Consultancy Services.

The actor claims to hold 3.64 million records and says compromised credentials enabled access. Tata and Gap said their reviews found no credible evidence that their systems were breached; both described the data as old and limited or non-sensitive. Hudson Rock said samples contained corporate-directory attributes, but BleepingComputer could not independently verify their authenticity.

## Sources

- [BleepingComputer](https://www.bleepingcomputer.com/news/security/hacker-claims-36-million-azure-account-records-stolen-from-major-companies/)

---
Canonical: https://techandbusiness.org/newswire/iORv8LMqMBTgF562Z16zgQ
Retrieved: 2026-08-17T21:47:51.784Z
Publisher: Tech & Business (techandbusiness.org)
