ShadowByt3$ (an extortion-as-a-service group) claims to have stolen about 859.0MB of Nintendo.com data in Japan—including employee personal and engagement-related information, analytics, surveys/reports (2016–2026), and exported bank/payment PDFs—threatening to leak it unless Nintendo contacts them within 48 hours, with ransom demanded at $2 million. The attacker sets a deadline of June 15, 2026 and states that contacting them would extend the deadline by one day, demanding payment to prevent publication. #Japan
Incident Details
- Victim: Nintendo Company (Nintendo.com)
- Sector: Technology
- Country: JP
- Actor: shadowbyt3$
- Source:
- Discovered: 2026-06-12T17:50:18.874752+00:00
- Published: 2026-06-12T17:50:17.427394+00:00
Information
- We are ShadowByt3$, an extortion-as-a-service group.
- We have stolen nearly 1GB of data.
- Payment demanded: $2 million.
- Deadline: 48 hours to make contact, with an extra day granted if you reply; final leak deadline is June 15, 2026.
- Suggested affected service: TINYpulse; employees are urged to check their inbox or log in if the leak URL looks familiar.
- Data size: 859.0MB, close to 1GB.
- Included data covers employee full names, email addresses, analytics, surveys, exported reports, bank statements, payment PDFs, W-9 forms, and employee IDs.
- Also included are exported cheers, wins dashboard and wall of wins data, and progress plans.
- The leak contains reports spanning 2016 through 2026.
- Employee analytics include conversations, personal feelings about work, and related content.
- It also includes a content library of personal questions, engagement analytics, and top employee rankings based on engagement.
Disclaimer: This post is based on public claims made by the ransomware group "shadowbyt3$". I cannot confirm the accuracy of the information. However, I would be happy to share any official statement from the affected organization to provide clarification.