logo

ShinyHunters claims Resecurity hack, firm says it’s a honeypot

ID: 09520008-dd97-5ceb-916d-cbd696a24e4d

STIX ID: report--09520008-dd97-5ceb-916d-cbd696a24e4d

Feed Name: Bleeping Computer

Threat Score
35/100

Date Published: 2026-01-03

Date Updated: 2026-07-18

Author: Lawrence Abrams

...
...

Threat actors claiming to be 'Scattered Lapsus$ Hunters' posted screenshots alleging they fully breached Resecurity and stole employee, threat-intel, and client data; Resecurity disputes this, saying the accessed environment was an isolated honeypot populated with synthetic consumer and payment records and used to monitor attacker activity. The company observed automated exfiltration attempts, captured telemetry and proxy IPs (some exposed via OPSEC failures), shared intelligence with law enforcement, and independent review found no evidence of real client data theft.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.