Analysis of a pair of data samples provided by the attacker revealed structured customer data, including full names, physical and email addresses, phone numbers, and subscription details, said Cybernews researchers. Such breach claims come just days after Success announced that its website and email systems were compromised by an unauthorized third party. However, it is unclear if this is the same incident as the alleged database leak or a separate attack. If legitimate, actors could exploit the information to perform targeted attacks.
"Exposure of personally identifiable information often leads to risks, including fraud attempts and social engineering targeting affected individuals," said researchers. Other media organizations have faced similar cybersecurity incidents, including a 2024 claim by the Rhysida ransomware group that it breached The Washington Times, as well as a previously discovered exposed database belonging to Thomson Reuters.
The full story
This article is one source in a clustered incident — the cluster page carries the summary, timeline and every other outlet covering it.
