Checkout.com Responds to Cyber Extortion Attempt Targeting Legacy System
By
StrangeSound
A second-rack bagel that's nearly first-rack. Tasty stuff.
Summary
Checkout.com experienced a cyber extortion attempt by the criminal group 'ShinyHunters' who gained unauthorized access to a legacy third-party cloud file storage system. The company confirmed that its live payment processing platform was not impacted, no merchant funds or card numbers were accessed, and they are donating the ransom amount to fund cybercrime research. The statement emphasizes transparency, accountability, and planned investment in cybersecurity.
Key quotes
· 4 pulledLast week, Checkout.com was contacted by a criminal group known as 'ShinyHunters', who claimed to have obtained data connected to Checkout.com and demanded a ransom.
Our live payment processing platform was not impacted. No merchant funds or card numbers were accessed.
We are donating the ransom amount to fund cybercrime research.
Upon investigation, we determined that this data was obtained by gaining unauthorized access to a legacy third-party cloud file storage system.
You might also wanna read
ShinyHunters leaks 4.9 million Charter Communications customer records after extortion refusal
ShinyHunters, a hacking group, claims to have leaked personal data of 4.9 million Charter Communications customers after the telecom company
Falcon AIDR Provides Prompt Layer Threat Detection for Kubernetes AI Applications
The article discusses how AI applications deployed in cloud environments introduce new security threats at the "prompt layer" — the interfac
17-Year-Old Builds Free Security Scanner After Seeing Small Businesses Priced Out of Cybersecurity
A 17-year-old security professional recounts how small businesses are priced out of cybersecurity solutions. After a healthcare practice in
infosecwriteups.com·1d agoMicrosoft calls for coordinated vulnerability disclosure after zero-day disclosures put customers at risk
Microsoft addresses the recent public disclosure of zero-day vulnerabilities that were not shared with the company beforehand, putting custo
Carnival Corporation data breach exposed personal information after social engineering attack
Carnival Corporation experienced a data breach in April 2026 after a hacker used social engineering tactics to trick an employee into granti
Okta develops kill-switch solution for rogue AI agents as enterprise adoption outpaces security
Okta's research reveals a major security gap in enterprise AI adoption: 92% of executives report moderate or widespread use of autonomous AI
