A phone company just lost 1.6 million records to a phone call

https://media.thenextweb.com/2026/06/Call-center.jpg

Have I Been Pwned logged the leaked records, and The Register reported the dump on 14 August. Jessica Lyons, its cybersecurity editor, wrote it. A ShinyHunters spokesperson told her the group broke in by voice-phishing a member of staff.

There was no exploit and no unpatched flaw. Someone picked up the phone.

The detail that makes this land is what RingCentral sells. It is a cloud communications company, and its product is the business telephone.

What the company has said

RingCentral disclosed the intrusion on 28 July, in a general advisory notice on its own trust centre. It called the attack “a sophisticated social engineering campaign” and said it moved to stop the unauthorised activity on detecting it. It also brought in a leading third-party forensic firm, and says it has seen no new unauthorised activity since.

The timing is worth a moment. ShinyHunters posted its listing on 27 July,...

Copyright of this story solely belongs to thenextweb.com. To see the full text click HERE