Brinks Home disclosed that attackers gained unauthorized access to part of its IT environment and are threatening to leak allegedly stolen data, while extortion group ShinyHunters has claimed responsibility for the intrusion. The company said it detected the incident on July 20 and immediately began incident response, adding that its alarm monitoring operations, products, and core system functionality were not affected based on current findings.
ShinyHunters alleges it accessed Brinks Home on July 13 through a Microsoft Entra voice-phishing attack and exfiltrated more than 4.9 million Salesforce records, including some employee personally identifiable information, customer support chat logs, and other data from the company’s Salesforce environment. Brinks Home said it is still determining exactly what information was involved and which individuals may be affected, and warned customers that threat actors may use the incident to send fraudulent messages impersonating Brinks Home or its response partners.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
8 events from the most recent confirmed update back to the earliest known activity.
According to The Register, ShinyHunters threatened to leak the allegedly stolen data and cause additional digital disruption unless Brinks Home negotiated. The group set Thursday, July 30 as the deadline to make contact.
Brinks Home said it identified the attack on July 20 and immediately activated its incident response procedures. The company later said the intrusion affected part of its IT systems.
ShinyHunters told BleepingComputer it breached Brinks Home on July 13 through a Microsoft Entra voice phishing attack that tricked an employee into completing an authentication or registration process. The gang claimed this gave it account access.
At the beginning of the week, ShinyHunters claimed responsibility for the Brinks Home intrusion and alleged it stole data from the company's Salesforce environment. The gang said it had taken millions of records, including customer data, employee PII, and support chat logs.
The Register notes that The Brinks Company sold its home security arm, Brinks Home, in 2010. This provides corporate context for the affected company.
Brinks Home disclosed that the breach exposed data tied to leads, customers, and employees, including 732,000 unique email addresses, names, phone numbers, physical addresses, purchase history, and partial payment card details. The company acknowledged the risk of data disclosure and said it would notify affected individuals in accordance with applicable law.
After Brinks Home allegedly did not pay a ransom, ShinyHunters listed the company on its Tor-based leak site and published more than 41 GB of files it claimed were stolen in the breach. SecurityWeek reported the leak while noting the gang's claims had not been independently verified.
Brinks Home disclosed that attackers gained unauthorized access to some of its systems and threatened to release information they claimed to have stolen. The company said its alarm monitoring, products, and system functionality were not impacted to its knowledge and that it was still determining what data and individuals were affected.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
10 references tracked. Mallory keeps watching after this page renders.
cyberveille.ch
Open sourcehookphish.com
Open sourcehaveibeenpwned.com
Open sourceteiss.co.uk
Open sourcecybersecuritynews.com
Open sourcetheregister.com
Open sourcebrinkshome.com
Open sourcebleepingcomputer.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.