Inter-Con Security Exposed 276,000 Records in ShinyHunters Breach That Claimed 2.7 Million
- Breach confirmed: Inter-Con Security data appeared on Have I Been Pwned on August 5, 2026, with approximately 276,000 breached accounts confirmed.
- Claim vs. reality: ShinyHunters originally claimed to have stolen 2.7 million records in June 2026 – nearly 10 times the confirmed figure.
- Data exposed: The breach included email addresses, names, physical addresses, job titles, phone numbers, and employer information.
Inter-Con Security Systems, one of the largest private security companies in the world, has had its data published after a "pay or leak" extortion campaign carried out by the ShinyHunters cybercrime group. Breach notification service Have I Been Pwned (HIBP) added the breach to its database on August 5, 2026, confirming 276,114 unique email addresses among the exposed records, which translates to a fraction of what the attackers originally claimed to have stolen.
According to its website, Inter-Con employs more than 40,000 people across North America, South America, and Africa, providing security guards, executive protection, emergency response, and screening services to government agencies, Fortune 100 companies, and private clients worldwide.
What Inter-Con Data Was Exposed
According to HIBP, the compromised data includes the following information drawn from a combination of contacts, internal users, and sales leads:
- email addresses,
- names,
- physical addresses,
- job titles,
- phone numbers,
- employer information.
A Massive Gap Between Claim and Confirmation
ShinyHunters first claimed responsibility for the breach on June 19, 2026, alleging the theft of approximately 2.7 million records from Inter-Con, according to threat-intelligence tracker Hackmanac.
As of this writing, Inter-Con has not publicly confirmed the incident or notified affected individuals – a gap that has already drawn scrutiny from at least one law firm, which opened an investigation into whether the company's delayed response violates federal or state data breach notification laws.
Part of a Larger Pattern
The Inter-Con breach adds to ShinyHunters' extensive 2026 campaign, during which the group has claimed responsibility for breaching several organizations, including Medtronic, American Tower, food distribution company Sysco, Ralph Lauren, Amazon’s One Medical Senior Health, the Council of Europe, Canvas/Instructure, cruise operator Carnival Corp, and Kodak.
The incident also echoes an earlier ShinyHunters breach of Aura, an identity-theft protection company, which drew attention for a similar irony: a company built around protecting its customers' security became a victim itself.





