ShinyHunters Leaks Data of Millions from Wall Street Firms and CarGurus
Article Content
Browse articles
ShinyHunters, a notorious cyber extortion gang, has leaked over 5 million records from two Wall Street firms, Mercer Advisors and Beacon Pointe Advisors, after a failed extortion attempt. Additionally, the gang has exposed data from 12.5 million users of the vehicle sales service CarGurus, which is now publicly accessible through the Have-I-Been-Pwned service.
Ask AI about this cluster
Answers cite the sources they use
Updated 188d ago How this analysis works
Timeline
2026-02-23
ShinyHunters dumps data from Wall Street firms on dark web
2026-02-23
ShinyHunters exposes data from CarGurus after failed extortion
2026-02-23
Have-I-Been-Pwned incorporates leaked CarGurus data
More articles in this cluster (2)
Following this threat?
Track Beacon Pointe Advisors in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical Zero-Day Vulnerability in Cisco Secure Email Gateway Exploited On September 14, 2026, Cisco disclosed a critical SQL injection vulnerability (CVE-2026-76461) in its Secure Email Gateway, allowing unauthenticated remote attackers to execute arbitrary commands with root privileges. This vulnerability arises from insufficient validation in the email parsing logic. Cisco confirmed…
Critical GitLab Vulnerabilities Exploited Within Hours of Disclosure On September 10, 2026, GitLab released patches for critical vulnerabilities CVE-2026-85706 and CVE-2026-87719. CVE-2026-85706, a path traversal flaw, allows unauthenticated users to read arbitrary files from GitLab servers, while CVE-2026-87719 enables credential theft via insecure deserialization. Both…