Kodak Confirms Data Breach After ShinyHunters Claim Customer Data Theft
Key Takeaways Imaging giant Kodak has confirmed a data breach following claims by the ShinyHunters extortion group. ShinyHunters alleges the theft of over 2.2 million customer records, including...
Key Takeaways
- Imaging giant Kodak has confirmed a data breach following claims by the ShinyHunters extortion group.
- ShinyHunters alleges the theft of over 2.2 million customer records, including personally identifiable information (PII), and internal corporate data.
- Kodak acknowledges unauthorized access to a “limited amount” of company data but has not independently verified the full scope of the breach claimed by ShinyHunters.
- The incident is under investigation with external cybersecurity experts and law enforcement, with no reported impact on company systems or operations.
Kodak Confirms Data Breach After ShinyHunters Claims Massive Customer Data Theft
Eastman Kodak, the venerable imaging technology company, has officially acknowledged a data breach. This confirmation follows a public claim by the notorious ShinyHunters extortion group, which asserted on its dark web leak site that it had stolen over 2.2 million customer records, encompassing personally identifiable information (PII) and sensitive internal corporate data.
Table Of Content
Kodak stated that an unauthorized third party gained temporary access to a “limited amount” of its company data. However, the firm has not yet corroborated the full extent of the data theft alleged by the threat actor.
Timeline of the Incident and ShinyHunters’ Demands
The breach first came to light on June 15, 2026, when ShinyHunters, a highly active and prolific cybercrime syndicate, listed Kodak on its dark web portal. The group subsequently issued a “final warning,” setting a deadline of June 18, 2026, for Kodak to establish contact. Failure to comply, ShinyHunters threatened, would result in the public dissemination of the exfiltrated data, alongside unspecified “annoying (digital) problems.”
🚨Cyber Alert Update ‼
🇺🇸USA – 𝗞𝗼𝗱𝗮𝗸
Kodak confirmed a data breach after unauthorized access to a limited amount of company data. ShinyHunters claimed to have stolen over 2.2 million customer PII and internal corporate records
Threat actor: ShinyHunters
Sector:… pic.twitter.com/vYEAahpftU— Hackmanac (@H4ckmanac) June 17, 2026
Kodak’s Response and Ongoing Investigation
In a statement released to the media, Kodak confirmed the incident: “Kodak recently discovered that an unauthorized third party illegally gained temporary access to a limited amount of company data.” The company further stated that it promptly engaged external cybersecurity experts to assist with an investigation into which data was accessed and copied. Kodak is also collaborating with law enforcement and expressed confidence that “there is no threat to our systems or operations.”
As of this report, Kodak has not disclosed the specific categories of customer PII that may have been compromised. Furthermore, the company has not confirmed whether the incident triggers any formal breach notification requirements under relevant data protection regulations. No disruptions to services or operational impacts have been reported.
The Threat Actor: ShinyHunters’ Modus Operandi
ShinyHunters is a well-established cybercriminal group renowned for its history of large-scale data theft and extortion campaigns across diverse sectors. In 2026 alone, the syndicate has taken credit for significant breaches, including incidents affecting up to 9,000 educational institutions via Instructure Canvas, an alleged compromise of 42 million records from Charter Communications, and attacks impacting over 100 organizations utilizing Oracle PeopleSoft. The group typically employs social engineering and vishing attacks to compromise employee credentials, subsequently exfiltrating sensitive data. Notably, ShinyHunters has not yet published any proof samples to substantiate the scale of its claims regarding the Kodak breach.
The investigation into the Kodak breach is ongoing, and the company has committed to providing further updates as new information emerges.
What You Should Do
- Monitor Accounts: Individuals who are Kodak customers should closely monitor their email accounts and other online accounts for any suspicious activity, particularly phishing attempts.
- Enable Multi-Factor Authentication (MFA): Activate MFA on all online accounts where available to add an extra layer of security.
- Be Wary of Phishing: Exercise extreme caution with unsolicited emails, messages, or calls, especially those purporting to be from Kodak or related services, that request personal information or login credentials.
- Review Financial Statements: Regularly check bank and credit card statements for unauthorized transactions.
- Update Passwords: Consider updating unique, strong passwords for critical online services, especially if any reuse of passwords across platforms is suspected.
Disclaimer: HackersRadar reports on cybersecurity threats and incidents for informational and awareness purposes only. We do not engage in hacking activities, data exfiltration, or the hosting or distribution of stolen or leaked information. All content is based on publicly available sources.



No Comment! Be the first one.