logo

PandaBuy pays ransom to hacker only to get extorted again

ID: b4d80b73-3d01-5772-a26d-d4a21b13ae3c

STIX ID: report--b4d80b73-3d01-5772-a26d-d4a21b13ae3c

Feed Name: Bleeping Computer

Threat Score
70/100

Date Published: 2024-06-06

Date Updated: 2026-04-20

Author: Bill Toulas

...
...

PandaBuy reportedly suffered a major data breach in which a threat actor named 'Sanggiero' published 3 million rows of customer data and later offered a purported 17 million-row database for sale and extortion; PandaBuy admitted to previously paying the attacker to stop a leak but now faces renewed extortion and possible resale of stolen customer and employee credentials, with at least 1.35 million emails added to Have I Been Pwned.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.