RingCentral, a cloud-based collaboration and communication platform, reported a data breach in July that potentially exposed the personal information of 1.6 million individuals. The company stated the incident was the result of a "sophisticated social engineering campaign."
The ShinyHunters extortion group claimed responsibility for the attack. After RingCentral did not comply with their demands, the group published a 280GB archive of data, which subsequently led to the information being listed on HaveIBeenPwned.
Upon detecting the unauthorized activity, RingCentral took steps to stop it and initiated an investigation with the assistance of a third-party forensic firm. The company stated that no new unauthorized activity has been observed since these remediation efforts.
RingCentral indicated that only a limited portion of its customers were affected and that those individuals were notified directly. The company emphasized that if a customer was not contacted, they were not impacted, and the core RingCentral platform and services continue to operate without disruption.
While RingCentral did not publicly name the attackers, the ShinyHunters extortion group added the company to its Tor-based leak site in late July. The group initially claimed to have stolen over 623 gigabytes of data.
Roughly a week later, following RingCentral's refusal to meet the extortionists' demands, ShinyHunters proceeded to leak a 280GB archive of the stolen data.
The breach affects personal information associated with 1.6 million RingCentral accounts. The inclusion of this data on HaveIBeenPwned confirms its public exposure.
RingCentral serves over 600,000 businesses with services such as calling, messaging, and voicemail, highlighting the potential reach of such an incident within the business communications sector.
✨ This summary was generated by AI from the outlets' reporting listed below. It is not independently verified and may contain errors — check the original sources. How BrevFeed works →
One email each morning: the day's tech stories, clustered across outlets and summarized. No account needed.
One email a day. Unsubscribe in one click, any time.
Spend a few minutes, get the whole day. Every topic's top stories in one hands-free rundown — listen, watch, or read the transcript.
▶ Play today's briefNew every morning, and the back catalogue is archived by date.
The ShinyHunters extortion group leaked personal information from 1.6 million RingCentral accounts after the company refused to pay a ransom following a July hack. This incident highlights ongoing threats from cyber extortion groups targeting cloud communication platforms and the sensitive data they hold.
RingCentral experienced a data breach in July due to a sophisticated social engineering campaign, potentially exposing the personal information of 1.6 million individuals. The ShinyHunters extortion group claimed responsibility and published a 280GB archive of data after RingCentral did not meet their demands, leading to the information being added to HaveIBeenPwned.