ShinyHunters Allegedly Claim Breach of 21 Million Records from Odido
A significant data breach has been reported, allegedly involving the cybercriminal group ShinyHunters, targeting the Dutch telecommunications company Odido and its subsidiary BEN. The breach reportedly affects 21 million records from 8 million customers.
A significant data breach has been reported, allegedly involving the cybercriminal group ShinyHunters, targeting the Dutch telecommunications company Odido and its subsidiary BEN. The breach reportedly affects 21 million records from 8 million customers.
The compromised information is said to include plaintext passwords, passport numbers, driver’s license numbers, International Bank Account Numbers (IBANs), residential addresses, email addresses, internal corporate documents, and company source code.
ShinyHunters has accused Odido of downplaying the severity of the incident, leading to increased public scrutiny regarding the company's transparency and data protection practices.
The breach reportedly affects 21 million records from 8 million customers.
Security experts have raised concerns about the storage of plaintext passwords, as it significantly increases the risk of account takeovers and credential-stuffing attacks. Additionally, the exposure of sensitive identification numbers and banking information heightens the threat of identity theft and financial fraud.
The potential exposure of internal documents and source code poses additional risks to Odido’s corporate security and intellectual property. If verified, these vulnerabilities could lead to further exploitation by malicious actors.
The incident underscores the critical need for robust data protection measures in the telecommunications sector. Regulatory scrutiny and reputational damage are potential consequences if the claims are confirmed.
Based on reporting by Cyber Security News.
