ShinyHunters Leaks RingCentral Customer Data
Coverage from Safestate, Rescana, and others

A July 2026 social engineering campaign compromised RingCentral systems and exposed personal contact information associated with approximately 1.
6 million accounts. ShinyHunters claimed to have stolen 623GB of data and published a 280GB archive after an alleged ransom demand was rejected, while RingCentral said its core platform and services remained operational. The exposed names, email addresses, phone numbers, and physical addresses could support follow-on phishing, vishing, and identity-related abuse, although the company has not confirmed the full affected population or all attacker claims.
The account adds a larger attacker-reported theft volume and clarifies that RingCentral disclosed the intrusion earlier than previously indicated. The core impact assessment remains broadly unchanged, with services operational and the breach scope still partly unverified.
