:

KLUE BREACH: DATA DELETION, BUT NEW RANSOM THREATS LOOM

SECURITY DESK1 MIN READ
FRI, JUN 26, 2026

■ AI-SUMMARIZED FROM 1 SOURCE ▸ TIMELINE

Market research firm Klue says the original hackers are deleting stolen customer data, but a second hacking group is now demanding ransom from the company.

Klue notified customers that the initial breach group appears to be removing the stolen data from their systems. The company did not specify why the criminals are deleting the information or provide a timeline for completion. The situation has escalated with a separate threat actor now seeking payment. This second group is leveraging the breach to extort ransom from Klue, a common tactic when multiple criminal organizations become aware of a compromised dataset. Klue has not disclosed the full scope of the breach, including how many customers were affected or what specific data was accessed. The company did not indicate whether it plans to pay either group or provide details on its response strategy. This incident underscores the evolving risks in data breaches, where stolen information can attract multiple malicious actors even as the original perpetrators attempt to cover their tracks.

■ SOURCES

TechCrunch

■ SUMMARY WRITTEN BY AI FROM THE LINKS ABOVE

■ MORE FROM THE SECURITY DESK

Polish authorities have arrested four members of an organized cybercrime group responsible for SIM-swapping attacks that resulted in millions in cryptocurrency theft. The gang breached telecom partners and hijacked email accounts to execute the attacks.

2H AGOIndustry Desk

Prediction market platform Polymarket disclosed a security breach where hackers stole user funds through a third-party vulnerability. The company announced it will refund affected users.

4H AGOSecurity Desk

Threat actors are exploiting Shopify's Shop order-tracking app by injecting fake purchase receipts into user accounts. The attacks trick victims into revealing sensitive data or installing remote access malware.

6H AGOSecurity Desk

A newly discovered macOS malware called Gaslight uses embedded fake errors and prompt injection strings to evade AI-powered malware analysis systems. The technique represents a new approach to defeating automated security tools.

6H AGOAI Desk

■ SUBSCRIBE TO THE DAILY BRIEF

ONE EMAIL, 5 STORIES, 06:00 UTC. UNSUBSCRIBE ANYTIME.