:

NINTENDO CONFIRMS DATA THEFT IN TINYPULSE BREACH

SECURITY DESK1 MIN READ
FRI, JUN 19, 2026

■ AI-SUMMARIZED FROM 1 SOURCE ▸ TIMELINE

Nintendo of America confirmed that threat actors stole survey data from TinyPulse, a third-party service used internally by the company. Nintendo's own systems were not compromised in the incident.

The stolen data came from TinyPulse, an employee engagement platform used by Nintendo for internal surveys. The breach affected the WebMD subsidiary's systems, though details on the scope of compromised information remain limited. Nintendo emphasized that the intrusion was contained to the third-party service and did not extend to its core infrastructure or customer-facing systems. The company has not disclosed the number of affected employees or specific details about the survey data accessed. The incident underscores ongoing risks associated with third-party service providers, even when direct company systems remain secure. Nintendo joins a growing list of major organizations affected by breaches involving external vendors and contractors. No indication has been provided regarding which threat actors were responsible or whether they attempted to exploit the data publicly.

■ SOURCES

Bleeping Computer

■ SUMMARY WRITTEN BY AI FROM THE LINKS ABOVE

■ MORE FROM THE SECURITY DESK

Let's Encrypt experienced widespread certificate renewal failures today, according to the service status page. The incident affected numerous users attempting to renew their SSL certificates.

4H AGOIndustry Desk

Microsoft has identified a lightweight backdoor malware that targets cryptocurrency wallets and spreads via USB drives. The malware, known as Crypto Clipper, communicates through the Tor network to evade detection.

4H AGOIndustry Desk

India's government told the Delhi High Court that Telegram acknowledged its inability to proactively detect channels selling leaked exam papers. The platform was warned two weeks before being blocked in the country.

9H AGOIndustry Desk

Australia's communications regulator will require businesses to register their SMS and MMS sender identities. The move aims to combat spam and fraudulent messaging.

9H AGOAI Desk

■ SUBSCRIBE TO THE DAILY BRIEF

ONE EMAIL, 5 STORIES, 06:00 UTC. UNSUBSCRIBE ANYTIME.