DATABASE All ShinyHunters Leaks (WORKING) 2026

#42
your goated asf for this g
This account is currently banned.
Ban Length: Permanent
Ban Reason: Leeching | https://spear.cx/Forum-Ban-Appeals if you feel this is incorrect.
Reply
#43
thank you for sharing this aqua
This account is currently banned.
Ban Length: Permanent
Ban Reason: Leeching | https://spear.cx/Forum-Ban-Appeals if you feel this is incorrect.
Reply
#44
thanks for sharing this, i hope is dedicated link
Reply
#46
thanks G boi aqua
Reply
#48
(07-25-2026, 03:42 AM)أكوا Wrote: بعض الروابط التي نشرتها من موقع ShinyHunters، مثل روابط Lacoste وZara وOne Medical المملوكة لشركة Amazon وغيرها، لا تعمل حاليًا بسبب تغيير خادم التنزيل الخاص بهم لعنوان IP تلقائيًا. 

إليكم رابط موقعهم الإلكتروني وروابط احتياطية لكل تسريب على موقعهم. أؤكد أنني لستُ تابعًا لـ ShinyHunters أو لأي نشاط مرتبط بهم. جميع المعلومات التي أنشرها على Spear هي معلومات عامة متاحة للجميع.

نبذة عنهم:  ShinyHunters هي مجموعة لسرقة البيانات والابتزاز بدافع مالي، نشطة منذ عام 2020، ومسؤولة عن اختراقات بارزة، بما في ذلك اختراق Ticketmaster (عبر Snowflake) وPowerSchool. في عام 2025، أطلقوا خدمة RaaS باسم "shinysp1d3r"، وفي أغسطس 2025، ألقت السلطات الفرنسية القبض على أربعة من أعضائها. اخترقت ShinyHunters بيانات 132 شركة، وما زال العدد في ازدياد.

الثغرات الأمنية المستغلة (3): أوراكل: 
Oracle

E-Business Suite (EBS)
CVE-2025-61882،

سيسكو:

Cisco Unified Communications
CVE-2026-20045،

Snowflake

: Snowflake (حشو بيانات الاعتماد / بدون مصادقة متعددة العوامل)
إساءة 

استخدام OAuth ، مصفوفة أساليب وتقنيات وتقنيات الهجوم: 
بيانات اعتماد غير مؤمنة: مفاتيح خاصة،

استخدام وسيلة مصادقة بديلة: رمز الوصول للتطبيق،
بيانات من مستودعات المعلومات،
تسريب البيانات عبر خدمة الويب،
تشفير البيانات لأغراض التأثير
، التصيد الاحتيالي للمعلومات: التصيد الموجه، 
التصيد الاحتيالي للمرفقات: التصيد الموجه، التصيد الصوتي (Vishing)،
 

موقع تسريبات ShinyHunters: 
Reply
#49
(07-25-2026, 03:42 AM)aqua Wrote: Some of the links I posted from ShinyHunters like Lacoste, Zara, Amazon Owned One Medical and others are dead due to ShinyHunters download server automatically changing IP's. 

Here's a link to their website and backup mirrors included for each leak on their site. I'm not affilated with ShinyHunters or any activity related to them. Everything I post on Spear is public information that anyone can find.

About: ShinyHunters is a financially motivated data-theft and extortion group active since 2020, responsible for high-profile breaches including Ticketmaster (via Snowflake) and PowerSchool; by 2025 they launched a RaaS offering called "shinysp1d3r," and in August 2025 French authorities arrested four members. ShinyHunters has breached 132 companies and counting.

Vulnerabilities Exploited (3): 
Oracle

Oracle E-Business Suite (EBS)
CVE-2025-61882

Cisco

Cisco Unified Communications
CVE-2026-20045

Snowflake

Snowflake (credential stuffing / no MFA)
OAuth Abuse 

TTPs Matrix: 
Unsecured Credentials: Private Keys

Use Alternate Authentication Material: Application Access Token
Data from Information Repositories
Exfiltration Over Web Service
Data Encrypted for Impact
Phishing for Information: Spearphishing Attachment 
Phishing: Spearphishing Voice (Vishing)
 

ShinyHunters Leaks Site: 
ty
Reply
#50
(07-25-2026, 03:42 AM)aqua Wrote: Some of the links I posted from ShinyHunters like Lacoste, Zara, Amazon Owned One Medical and others are dead due to ShinyHunters download server automatically changing IP's. 

Here's a link to their website and backup mirrors included for each leak on their site. I'm not affilated with ShinyHunters or any activity related to them. Everything I post on Spear is public information that anyone can find.

About: ShinyHunters is a financially motivated data-theft and extortion group active since 2020, responsible for high-profile breaches including Ticketmaster (via Snowflake) and PowerSchool; by 2025 they launched a RaaS offering called "shinysp1d3r," and in August 2025 French authorities arrested four members. ShinyHunters has breached 132 companies and counting.

Vulnerabilities Exploited (3): 
Oracle

Oracle E-Business Suite (EBS)
CVE-2025-61882

Cisco

Cisco Unified Communications
CVE-2026-20045

Snowflake

Snowflake (credential stuffing / no MFA)
OAuth Abuse 

TTPs Matrix: 
Unsecured Credentials: Private Keys

Use Alternate Authentication Material: Application Access Token
Data from Information Repositories
Exfiltration Over Web Service
Data Encrypted for Impact
Phishing for Information: Spearphishing Attachment 
Phishing: Spearphishing Voice (Vishing)
 

ShinyHunters Leaks Site: 

thank
This account is currently banned.
Ban Length: Permanent
Ban Reason: Leeching | https://spear.cx/Forum-Ban-Appeals if you feel this is incorrect.
Reply



Recently Browsing 5 Guest(s)