Ransom! Nintendo Company (Nintendo.com) (JUN-2026)

Ransom! Nintendo Company (Nintendo.com) (JUN-2026)

ShadowByt3$ (an extortion-as-a-service group) claims to have stolen about 859.0MB of Nintendo.com data in Japan—including employee personal and engagement-related information, analytics, surveys/reports (2016–2026), and exported bank/payment PDFs—threatening to leak it unless Nintendo contacts them within 48 hours, with ransom demanded at $2 million. The attacker sets a deadline of June 15, 2026 and states that contacting them would extend the deadline by one day, demanding payment to prevent publication. #Japan

Incident Details

Information

  • We are ShadowByt3$, an extortion-as-a-service group.
  • We have stolen nearly 1GB of data.
  • Payment demanded: $2 million.
  • Deadline: 48 hours to make contact, with an extra day granted if you reply; final leak deadline is June 15, 2026.
  • Suggested affected service: TINYpulse; employees are urged to check their inbox or log in if the leak URL looks familiar.
  • Data size: 859.0MB, close to 1GB.
  • Included data covers employee full names, email addresses, analytics, surveys, exported reports, bank statements, payment PDFs, W-9 forms, and employee IDs.
  • Also included are exported cheers, wins dashboard and wall of wins data, and progress plans.
  • The leak contains reports spanning 2016 through 2026.
  • Employee analytics include conversations, personal feelings about work, and related content.
  • It also includes a content library of personal questions, engagement analytics, and top employee rankings based on engagement.

Disclaimer: This post is based on public claims made by the ransomware group "shadowbyt3$". I cannot confirm the accuracy of the information. However, I would be happy to share any official statement from the affected organization to provide clarification.

monitored by: ransomware.live