Skip to content
CyrusOne and Neogen Suffer Major Data Breaches

CyrusOne and Neogen Suffer Major Data Breaches

First seen 10 Oct 2026, 03:36 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •October 10, 2026 at 04:38 UTC
  • •CyrusOne and Neogen were both targeted by ShinyHunters in August 2026.
  • •CyrusOne reported 373,460 breached accounts, while Neogen reported 435,963.
  • •The breaches involved sensitive corporate data, including email addresses and employee records.

In August 2026, both CyrusOne and Neogen were targeted by the ShinyHunters group in separate 'pay or leak' extortion attempts. CyrusOne reported a breach affecting 373,460 accounts, with data including email addresses, names, and corporate records. Similarly, Neogen experienced a breach impacting 435,963 accounts, with data primarily consisting of corporate records and email addresses. The breaches have raised concerns about the security of sensitive corporate information. Both companies have not confirmed the extent of the breaches or the current status of their investigations. The incidents highlight the ongoing threat posed by ransomware groups using extortion tactics to compromise organizations.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated just now How this analysis works

Timeline

2026-08-01
ShinyHunters attack on CyrusOne
CyrusOne was targeted by ShinyHunters, leading to a significant data breach affecting over 373,000 accounts.
Redpacketsecurity
2026-08-01
ShinyHunters attack on Neogen
Neogen was similarly targeted by ShinyHunters, resulting in a breach impacting over 435,000 accounts.
Redpacketsecurity

More articles in this cluster (2)

Following this threat?

Track CyrusOne in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed

Common questions

What data was compromised in the breaches?
Both breaches involved sensitive corporate information, including email addresses, names, and employee records.
Are there any confirmed exploitations of the breached data?
The articles do not confirm any active exploitation of the breached data at this time.
What should affected organizations do?
Organizations should review their security measures and monitor for any suspicious activity related to the compromised data.