Close Menu
  • Home
  • Cybercrime and Ransomware
  • Emerging Tech
  • Threat Intelligence
  • Expert Insights
  • Careers and Learning
  • Compliance

Subscribe to Updates

Subscribe to our newsletter and never miss our latest news

Subscribe my Newsletter for New Posts & tips Let's stay updated!

What's Hot

Securing Edge AI in Customer Environments

September 5, 2026

SilkParasite Espionage Campaign Launches Five New RATs Against Central Asian Governments

September 4, 2026

Unlocking the Power of Lasso’s AI Security Platform

September 4, 2026
Facebook X (Twitter) Instagram
The CISO Brief
  • Home
  • Cybercrime and Ransomware
  • Emerging Tech
  • Threat Intelligence
  • Expert Insights
  • Careers and Learning
  • Compliance
Home » Checkout.com Faces Data Breach Following Extortion Attempt
Cybercrime and Ransomware

Checkout.com Faces Data Breach Following Extortion Attempt

Staff WriterBy Staff WriterNovember 14, 2025No Comments3 Mins Read4 Views
Facebook Twitter Pinterest LinkedIn Tumblr Email
Share
Facebook Twitter LinkedIn Pinterest WhatsApp Email

Fast Facts

  1. Checkout.com disclosed a data breach involving a legacy third-party cloud storage system used for internal documents, not affecting payment processing or merchant funds.
  2. The breach was caused by attackers from the ShinyHunters group, which gained access due to improper decommissioning of the outdated system.
  3. The company reported the incident to law enforcement, assured no merchant funds or card data were accessed, and declined to pay the ransom.
  4. Instead, Checkout is donating the ransom amount to cybersecurity research initiatives at Carnegie Mellon University and Oxford University, viewing the attack as a call to improve industry-wide security.

The Core Issue

Checkout.com, a global payment service provider, recently disclosed a data breach caused by hackers linked to the infamous ShinyHunters group, which attempted to extort the company. The breach involved an outdated third-party cloud storage system that hadn’t been used since 2020, primarily containing internal operational and merchant onboarding documents. The attackers gained access through a failure to properly decommission this legacy system, a mistake for which Checkout.com admits full responsibility. Importantly, the hackers did not access sensitive merchant payment data or card information, and the company is actively investigating the incident, reporting it to law enforcement and regulators. The extortion attempt was unsuccessful, and Checkout.com has publicly refused to pay the ransom, opting instead to donate the ransom amount to cybersecurity research centers at Carnegie Mellon University and Oxford University, turning a criminal attack into an investment in industry security.

Critical Concerns

The recent disclosure of a data breach at Checkout.com following an extortion attempt underscores a significant threat that any business faces, highlighting how cybercriminals can exploit vulnerabilities to access sensitive customer information, financial data, or proprietary systems. When such a breach occurs, the repercussions are far-reaching, including financial loss from fraud or theft, irreversible damage to brand reputation, erosion of customer trust, and potential legal liabilities due to non-compliance with data protection regulations. For any business, especially those handling payment processing or personal data, this threat translates into operational disruption, increased security costs, and a long-lasting impact on stakeholder confidence—demonstrating that cyber extortion and data breaches are not just technical issues but critical business risks capable of threatening overall stability and growth.

Possible Actions

Timely remediation is critical in the wake of a data breach like the one experienced by Checkout.com, especially following an extortion attempt, to minimize damage, protect sensitive customer information, and restore trust. Rapid response not only contains the incident but also prevents further exploitation of vulnerabilities, ensuring organizational resilience and compliance with cybersecurity standards.

Incident Response

  • Activate the incident response team immediately.
  • Document all breach-related details thoroughly.

Communication

  • Notify stakeholders, customers, and regulators promptly.
  • Provide clear, transparent information about the breach and remediation efforts.

Containment

  • Isolate affected systems to prevent further spread.
  • Disable compromised accounts or services.

Eradication

  • Remove malicious tools or unauthorized access points.
  • Patch exploited vulnerabilities.

Recovery

  • Restore systems from secure backups.
  • Monitor systems closely for signs of ongoing activity.

Analysis & Improvement

  • Conduct a root cause analysis.
  • Review and enhance existing security measures and policies.

Legal & Compliance

  • Engage legal counsel for regulatory reporting.
  • Document breach and response actions for compliance and future reference.

Continue Your Cyber Journey

Discover cutting-edge developments in Emerging Tech and industry Insights.

Access world-class cyber research and guidance from IEEE.

Disclaimer: The information provided may not always be accurate or up to date. Please do your own research, as the cybersecurity landscape evolves rapidly. Intended for secondary references purposes only.

Cyberattacks-V1cyberattack-v1-multisource

Checkout CISO Update cyber risk cybercrime Cybersecurity data breach MX1 ransom risk management ShinyHunters
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleThe Silent Threat: Why Proactive Defense on Identity Attacks Matters
Next Article Breaking Tech: Layoffs, Vulnerabilities & Bug Bounty Blitz
Avatar photo
Staff Writer
  • Website

John Marcelli is a staff writer for the CISO Brief, with a passion for exploring and writing about the ever-evolving world of technology. From emerging trends to in-depth reviews of the latest gadgets, John stays at the forefront of innovation, delivering engaging content that informs and inspires readers. When he's not writing, he enjoys experimenting with new tech tools and diving into the digital landscape.

Related Posts

Securing Edge AI in Customer Environments

September 5, 2026

SilkParasite Espionage Campaign Launches Five New RATs Against Central Asian Governments

September 4, 2026

Unlocking the Power of Lasso’s AI Security Platform

September 4, 2026

Comments are closed.

Latest Posts

SilkParasite Espionage Campaign Launches Five New RATs Against Central Asian Governments

September 4, 2026

Operation QUICSILVER Strikes Myanmar Government and IT with Backdoor Attack

September 1, 2026

Mirage2FA Surge: 4,500 US & EU Companies Under Attack via Microsoft 365 Logins

August 29, 2026

Active Gitea RCE Exploitation Delivers Miner-Like Payload

August 26, 2026
Don't Miss

Securing Edge AI in Customer Environments

By Staff WriterSeptember 5, 2026

Edge AI shifts responsibility to customers for verifying the security, trustworthiness, and integrity of AI…

SilkParasite Espionage Campaign Launches Five New RATs Against Central Asian Governments

September 4, 2026

Unlocking the Power of Lasso’s AI Security Platform

September 4, 2026

Subscribe to Updates

Subscribe to our newsletter and never miss our latest news

Subscribe my Newsletter for New Posts & tips Let's stay updated!

Recent Posts

  • Securing Edge AI in Customer Environments
  • SilkParasite Espionage Campaign Launches Five New RATs Against Central Asian Governments
  • Unlocking the Power of Lasso’s AI Security Platform
  • AI Agents Breach Network in 10 Hours Using Exploits
  • Insurers Hunt for Solutions to Contain Rogue AI
About Us
About Us

Welcome to The CISO Brief, your trusted source for the latest news, expert insights, and developments in the cybersecurity world.

In today’s rapidly evolving digital landscape, staying informed about cyber threats, innovations, and industry trends is critical for professionals and organizations alike. At The CISO Brief, we are committed to providing timely, accurate, and insightful content that helps security leaders navigate the complexities of cybersecurity.

Facebook X (Twitter) Pinterest YouTube WhatsApp
Our Picks

Securing Edge AI in Customer Environments

September 5, 2026

SilkParasite Espionage Campaign Launches Five New RATs Against Central Asian Governments

September 4, 2026

Unlocking the Power of Lasso’s AI Security Platform

September 4, 2026
Most Popular

CISA Alerts: Critical Vulnerability in Splunk Enterprise Under Active Attack

June 19, 2026152 Views

Salesforce Disables Klue App After Data Breach from Token Abuse

June 19, 2026150 Views

Gefährliche Angriffe: Wie Cyberkriminelle Ihre Identität angreifen

January 29, 2026147 Views

Archives

  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025

Categories

  • Compliance
  • Cyber Updates
  • Cybercrime and Ransomware
  • Editor's pick
  • Emerging Tech
  • Events
  • Featured
  • Insights
  • Most Read
  • Threat Intelligence
  • Uncategorized
© 2026 thecisobrief. Designed by thecisobrief.
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions

Type above and press Enter to search. Press Esc to cancel.