On August 18, 2026, the threat actor Satanic released data on pwnforums allegedly taken from hundreds of vendors using Stripe, including 1,033 API keys and extensive customer and transaction records. The leak suggests a broader compromise of payment infrastructure, with the actor claiming access to roughly 20,000 Stripe API keys and threatening staggered releases. #Satanic #Stripe #pwnforums
Keypoints
- Satanic published a large data dump tied to Stripe-using vendors on pwnforums.
- The initial release included 669 vendors, 1,033 API keys, and about 33GB of data.
- Leaked files exposed customer PII, invoices, balances, charges, and payout records.
- Some exposed live API keys could allow unauthorized access to Stripe accounts and financial abuse.
- Investigators suspect misconfigured environment variables, debug logs, or shared infrastructure as the likely attack vector.