← All stories
● Covered by 2 sources · 2 reportsMedium impact2 negative

RingCentral Data Breach Impacts 1.6 Million Accounts After Social Engineering Attack

🔄 Updated 1d ago
New to BrevFeed? We gather this story from every outlet covering it into one summary — ranked by real-world impact, not just the latest headline — so you never miss what matters. What is BrevFeed? →

Key points

  • 1.6 million RingCentral accounts were impacted.
  • The incident occurred in July due to social engineering.
  • ShinyHunters group claimed responsibility and leaked data.
  • RingCentral did not pay the extortion demand.
  • Affected customers were notified directly by RingCentral.

Overview of the Incident

RingCentral, a cloud-based collaboration and communication platform, reported a data breach in July that potentially exposed the personal information of 1.6 million individuals. The company stated the incident was the result of a "sophisticated social engineering campaign."

The ShinyHunters extortion group claimed responsibility for the attack. After RingCentral did not comply with their demands, the group published a 280GB archive of data, which subsequently led to the information being listed on HaveIBeenPwned.

Company Response and Scope

Upon detecting the unauthorized activity, RingCentral took steps to stop it and initiated an investigation with the assistance of a third-party forensic firm. The company stated that no new unauthorized activity has been observed since these remediation efforts.

RingCentral indicated that only a limited portion of its customers were affected and that those individuals were notified directly. The company emphasized that if a customer was not contacted, they were not impacted, and the core RingCentral platform and services continue to operate without disruption.

Attribution and Data Leak

While RingCentral did not publicly name the attackers, the ShinyHunters extortion group added the company to its Tor-based leak site in late July. The group initially claimed to have stolen over 623 gigabytes of data.

Roughly a week later, following RingCentral's refusal to meet the extortionists' demands, ShinyHunters proceeded to leak a 280GB archive of the stolen data.

Impact on Users

The breach affects personal information associated with 1.6 million RingCentral accounts. The inclusion of this data on HaveIBeenPwned confirms its public exposure.

RingCentral serves over 600,000 businesses with services such as calling, messaging, and voicemail, highlighting the potential reach of such an incident within the business communications sector.

✨ This summary was generated by AI from the outlets' reporting listed below. It is not independently verified and may contain errors — check the original sources. How BrevFeed works →

The daily brief

One email each morning: the day's tech stories, clustered across outlets and summarized. No account needed.

One email a day. Unsubscribe in one click, any time.

Today's brief

Spend a few minutes, get the whole day. Every topic's top stories in one hands-free rundown — listen, watch, or read the transcript.

~7 min · 6 stories · Aug 15

▶ Play today's brief Listen on Spotify

New every morning, and the back catalogue is archived by date.

How outlets covered it

The ShinyHunters extortion group leaked personal information from 1.6 million RingCentral accounts after the company refused to pay a ransom following a July hack. This incident highlights ongoing threats from cyber extortion groups targeting cloud communication platforms and the sensitive data they hold.

RingCentral experienced a data breach in July due to a sophisticated social engineering campaign, potentially exposing the personal information of 1.6 million individuals. The ShinyHunters extortion group claimed responsibility and published a 280GB archive of data after RingCentral did not meet their demands, leading to the information being added to HaveIBeenPwned.