Kodak Confirms Data Breach Following ShinyHunters’ Claim of Stolen Customer Records
One week ago, the extortion group also claimed responsibility for a new series of breaches at over 100 organizations(including the University of Nottingham) following data-theft attacks that exploited a zero-day flaw in Oracle’s PeopleSoft enterprise business software suite. “This is a final warning to reach out by 18 June 2026 before we leak along with several annoying (digital) problems that’ll come your way.” Although Kodak has yet to disclose how the threat actors gained access to its systems, ShinyHunters has also claimed attacks against hundreds of Salesforce customers over the past year, saying they’ve stolen over 1.5 billion records in Salesforce Aura and Salesloft Drift campaigns.
The Breach
A company spokesperson told BleepingComputer that attackers only accessed a “limited amount” of data in the incident, but didn’t reply to a subsequent email asking if they breached Kodak’s internal network.
Further details indicate that we will share additional updates as appropriate.” While the company has yet to attribute this breach, the ShinyHunters extortion group has claimed responsibility on their dark web leak site.
Kodak has confirmed that it’s working with external cybersecurity experts to investigate a security breach after hackers gained access to some of the company’s data.
We are working with law enforcement and are confident there is no threat to our systems or operations.” ShinyHunters is a well-documented cybercriminal syndicate with a history of large-scale data theft and extortion campaigns targeting organizations across multiple sectors.
” of data in the incident, but didn’t reply to a subsequent email asking if they breached Kodak’s internal network. ”, Spokesperson
Affected Data & Victims
Founded in 1880 as the Eastman Kodak Company and headquartered in Rochester, New York, Kodak has 79,000 worldwide patents and provides commercial print, advanced materials, and chemical products. One week ago, the extortion group also claimed responsibility for a new series of breaches at over 100 organizations(including the University of Nottingham) following data-theft attacks that exploited a zero-day flaw in Oracle’s PeopleSoft enterprise business software suite. We are working with law enforcement and are confident there is no threat to our systems or operations.” ShinyHunters is a well-documented cybercriminal syndicate with a history of large-scale data theft and extortion campaigns targeting organizations across multiple sectors.
“Over 2.2 million records containing customer PIl and other internal corporate data was compromised,” they said.
Cyber Alert Update USA, 𝗞𝗼𝗱𝗮𝗸Kodak confirmed a data breach after unauthorized access to a limited amount of company data.
In 2026 alone, the group has claimed responsibility for breaches at Instructure Canvas affecting up to 9,000 educational institutions, Charter Communications (42 million alleged records), and Oracle PeopleSoft customers across more than 100 organizations.
What Victims Should Do
-
We will share additional updates as appropriate.” While the company has yet to attribute this breach, the ShinyHunters extortion group has claimed responsibility on their dark web leak site.
-
Cyber Alert Update USA, 𝗞𝗼𝗱𝗮𝗸Kodak confirmed a data breach after unauthorized access to a limited amount of company data.
-
The investigation remains ongoing, and Kodak has committed to providing additional updates as circumstances develop.
Analysis
As AI tooling proliferates, security teams face expanding attack surfaces tied to model inference and data pipelines.
Sources
SecurityXP delivers daily cybersecurity news, vulnerability analysis, data breach reports, and threat intelligence.
Security Digest
Get the latest cybersecurity news, vulnerability alerts, and threat intelligence delivered to your inbox.
Related Articles
Chinese hackers breach REDCap servers, steal medical research Data Breach
"Their research areas span a broad spectrum of modern medicine, from molecular discovery and clinical drug trials to state-level public health policy and...
Data BreachesOracle PeopleSoft servers hacked in ShinyHunters data theft attacks
ShinyHunters, or a group impersonating them, has been targeting Oracle PeopleSoft ERP servers in data theft attacks, with researchers publishing IP-address IOCs.
Data BreachesRevolut Data Breach: Tens of Thousands Affected
Over the weekend, the financial technology company Revolut was the victim of a 'highly targeted' cyberattack in which threat actors gained access to the personal data of 0.16% of its users (approxi...
Data Breaches$3,500 for Starbucks Data with PII for Sale
The Straits Times discovered that 330,000 Singaporean Starbucks customers' personal information had been compromised and sold on an online forum since September 10. On Friday, the coffee chain sent...