United States faces coordinated ShinyHunters corporate data extortion
PUBLISHED Jun 18, 2026, 8:10 AM ET
Read, Watch or Listen
The cyber extortion group ShinyHunters has launched a coordinated campaign targeting major U.S. corporations, including Eastman Kodak Company and JCPenney, focusing on data theft rather than ransomware encryption. On June 18, 2026, the group claimed to have exfiltrated millions of internal records and threatened public leaks if ransom demands are not met. Kodak, which reported over 2.2 million customer and corporate records affected, has engaged external cybersecurity experts and notified law enforcement, stating the incident is contained. A separate data breach at JCPenney, discovered June 12, 2026, is under investigation by law firm Edelson Lechtzin LLP and is also attributed to ShinyHunters.
By Ayesha A. | JQJO News
Timeline of Events
- June 12, 2026 JCPenney breach reportedly discovered
- Mid-June 2026 Edelson Lechtzin launches legal investigation
- June 18, 2026 ShinyHunters confirms coordinated extortion campaign
- June 18, 2026 Group claims millions of internal records
- June 18, 2026 Kodak breach publicly acknowledged, investigation begins
- Today Kodak listed on ShinyHunters leak site
- Today ShinyHunters compliance deadline for Kodak expires
- Recently Group shifts to data-theft extortion model
News Intelligence
- Your privacy is at stake. ShinyHunters' shift to data theft means personal information could be exposed. If you've done business with Kodak or JCPenney, stay vigilant. Check your accounts for suspicious activity.
Comments