Bleeping Computer reports:
The ShinyHunters extortion gang has claimed responsibility for a recently disclosed Ernst & Young data breach, saying it obtained credentials for some of the company’s systems via a supply-chain attack.
Ernst & Young disclosed the breach earlier this month, saying a third-party support ticket system used by its IT personnel was compromised and support tickets that may contain client tax information were stolen.
EY says it detected unusual activity on April 23 and determined that the attacker accessed the platform between March 28 and April 12, downloading multiple documents.
Read more at BleepingComputer.
Earlier today, ShinyHunters added a listing for E&Y to its dedicated leak site with this message:
Yes it was us. Now come talk to us. We have been trying to reach you. If you do not come talk to us within the given deadline, we fully and completely intend to release all the data and files.
This is a final warning to reach out by 31 July 2026 before we leak along with several annoying (digital) problems that’ll come your way. Make the right decision, don’t be the next headline.
The threat actors claimed to BleepingComputer that EY credentials were obtained through a supply-chain attack and used to breach the company. But the threat actors have posted no proof of claims, and Ernst & Young has not confirmed that ShinyHunters was responsible for the attack or how it occurred.
