:

NAIC BREACH: SHINYUNTERS STEALS PUBLIC DATA VIA PEOPLESOFT ZERO-DAY

AI DESK1 MIN READ
MON, JUN 29, 2026

■ AI-SUMMARIZED FROM 1 SOURCE ▸ TIMELINE

The National Association of Insurance Commissioners confirmed that the ShinyHunters extortion group breached its systems through a zero-day vulnerability in Oracle PeopleSoft. The attackers accessed only publicly available data, outdated logs, and configuration files.

NAIC disclosed the incident after ShinyHunters exploited an unpatched vulnerability in its PeopleSoft server. The group, known for extortion-based attacks, has claimed responsibility for the breach. According to NAIC's assessment, the stolen data consists primarily of information already in the public domain, historical system logs, and server configuration details. No current sensitive records or personal information appears to have been compromised. ShinyHunters has previously targeted major corporations and organizations, typically demanding ransom payments and threatening to publish stolen data. The group's breach of NAIC—a regulatory body representing state insurance commissioners—marks another high-profile target. Oracle has not yet released a patch for the exploited zero-day vulnerability. NAIC has notified relevant authorities and is implementing additional security measures to prevent further unauthorized access.

■ SOURCES

Bleeping Computer

■ SUMMARY WRITTEN BY AI FROM THE LINKS ABOVE

■ MORE FROM THE SECURITY DESK

Two recently patched vulnerabilities in PaperCut NG and MF print management software are being actively exploited in data theft campaigns. The zero-days were patched last week after initial exploitation was discovered.

6H AGOSecurity Desk

Inexpensive GPS jamming devices are proliferating globally, disrupting navigation systems across civilian infrastructure. The low cost and easy availability of these tools are creating widespread interference zones.

8H AGOIndustry Desk

Devices promising free movies are recruiting home internet connections into proxy networks without users' knowledge. The trade-off: your bandwidth and privacy.

9H AGOIndustry Desk

QubesOS released a security update addressing a critical vulnerability that allows arbitrary code execution through an error reporting backchannel in the copy-to-VM function. The flaw affects multiple Qubes versions.

13H AGOIndustry Desk

■ SUBSCRIBE TO THE DAILY BRIEF

ONE EMAIL, 5 STORIES, 06:00 UTC. UNSUBSCRIBE ANYTIME.