Last updated 2 weeks ago
CFGI, a financial consulting and advisory firm, suffered a data breach in March 2026 as part of a ShinyHunters 'pay-or-leak' extortion campaign. The breach exposed 248,235 records containing corporate contact information, including unique email addresses, names, phone numbers, and physical addresses. The disclosure date is March 2026, though the discovery date is not specified.
The attack was carried out by the threat actor group ShinyHunters, who obtained and subsequently publicized the data. The initial access vector is not detailed, but the group is known for extortion-driven breaches. The exfiltrated data comprised corporate contact information, specifically email addresses, names, phone numbers, and physical addresses, with no mention of financial or sensitive personal data.
No post-incident developments such as regulatory actions, litigation, ransom payments, or containment milestones are reported in the article.
ShinyHunters pay-or-leak extortion campaign
CFGI's breach underscores the need for robust access controls and monitoring to detect unauthorized data exfiltration, particularly for organizations handling sensitive corporate contact data. The involvement of ShinyHunters highlights the importance of proactive threat intelligence and incident response planning to mitigate extortion risks. The exposure of 248k records suggests that data minimization and encryption of contact information could reduce the impact of similar breaches.
Sign in to join the discussion.
Company
Industry
Location
Disclosed
Records Affected
Attack Vector
Threat Actor
Continent
Country
Industry
Attack Vector
Threat Actor