Skip to content

Checkout.com

Disclosed Nov 14, 202510 months agoConfirmed

Official notice

ShinyHunters breach Checkout.com legacy cloud storage, firm refuses ransom

Checkout.com said ShinyHunters accessed a legacy third-party cloud storage system that was not properly decommissioned, holding merchant data from 2020 and earlier plus onboarding documents; it refused to pay and pledged to donate the ransom amount to security research.

What is known

People affectedNot stated in the sources we have
DisclosedNov 14, 2025
AttackExtortion
Data exposedInternal documents, Other
SectorFinance · GB
StatusConfirmed

Sources

Source
Checkout.com snubs hackers after data breach, to donate ransom insteadbleepingcomputer.com · News
Checkout.com: Protecting our merchants, standing up to extortioncheckout.com · The organization

Notices filed

WhereFiledPeople
ResearchtotalNov 14, 2025
History of this record
  • 2026-09-25 · added · seed source

First seen 2026-09-25 (Research), confirmed by Research. Record counts are as reported. Not legal advice.

Everything about Checkout.com

New breaches by email

Wednesdays, only in weeks with newly disclosed breaches, the largest first.

Double opt-in. Unsubscribe any time.