Keypoints
- ShinyHunters claimed the EY breach on its data leak site.
- The group said it used stolen credentials from a supply-chain attack.
- EY disclosed that a third-party support ticket system was compromised.
- The stolen tickets may have contained client tax, personal, and financial data.
- EY said it secured systems, notified law enforcement, and offered identity monitoring.