Cybernews Flink Data Breach Leads to Triple Extortion Scheme
Article Content
- •LPG Group claims to have stolen data from over one million Flink customers.
- •The breach involved unauthorized access to Flink's internal systems without compromising passwords.
- •Hackers are employing a triple extortion tactic, targeting both the company and affected individuals.
Cybercriminals from the LPG Group have reportedly stolen personal data of over one million Flink customers and 13,000 employees. The breach exposed names, email addresses, postal addresses, and delivery instructions, but account passwords and payment information were not compromised. Flink confirmed unauthorized access to its internal systems and has initiated countermeasures, including an investigation with cybersecurity experts. The hackers are demanding 100 Ethereum (approximately €238,000) from Flink and 0.005 ETH (about €10) from individual victims, threatening to sell the stolen data on the dark web if payments are not made by October 2. Flink has advised customers against responding to the ransom demands and is cooperating with law enforcement. The LPG Group's attack method reportedly involved compromised login credentials from a Flink employee.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (4)
Following this threat?
Track Conti, ShinyHunters and Flink in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical Zero-Day Vulnerability in Cisco Secure Email Gateway Exploited On September 14, 2026, Cisco disclosed a critical SQL injection vulnerability (CVE-2026-76461) in its Secure Email Gateway, allowing unauthenticated remote attackers to execute arbitrary commands with root privileges. This vulnerability arises from insufficient validation in the email parsing logic. Cisco confirmed…
Iranian State Actors Deploy CHOSEN BRICK Spyware Against Dissidents On September 15, 2026, the UK, US, and Netherlands issued a joint advisory regarding a spyware campaign attributed to Iranian state actors targeting dissidents, activists, and journalists. The malware, known as CHOSEN BRICK, is delivered through spear-phishing attacks on messaging platforms like WhatsApp and Telegram.…