PornHub extorted after hackers steal Premium member activity data
嗯,用户让我帮忙总结一篇关于PornHub被ShinyHunters勒索的文章,控制在100字以内。首先,我需要通读整篇文章,抓住关键信息。 文章提到,PornHub的Premium用户的搜索和观看历史在Mixpanel的数据泄露中被盗。Mixpanel在2025年11月8日遭到钓鱼攻击,导致系统被入侵。虽然PornHub在2021年后不再使用Mixpanel,但泄露的数据是历史记录。ShinyHunters威胁要公开数据,除非支付赎金。他们声称窃取了94GB的数据,包括超过2亿条个人信息。 接下来,我需要将这些信息浓缩到100字以内。要突出事件的主要点:数据泄露、涉及的公司、ShinyHunters的勒索行为以及受影响的数据量。 可能的结构是:首先说明事件发生,然后提到数据来源和时间,接着是勒索行为和数据量。这样既简洁又全面。 最后检查字数,确保不超过限制,并且语言通顺自然。 </think> 成人视频平台PornHub因第三方数据分析公司Mixpanel的数据泄露事件受到网络犯罪团伙ShinyHunters的勒索。此次泄露涉及Premium用户的搜索和观看历史记录等敏感信息,ShinyHunters威胁公开数据以换取赎金。 2025-12-15 21:30:19 Author: www.bleepingcomputer.com(查看原文) 阅读量:3 收藏

PornHub

Adult video platform PornHub is being extorted by the ShinyHunters extortion gang after the search and watch history of its Premium members was reportedly stolen in a recent Mixpanel data breach.

Last week, PornHub disclosed that it was impacted by a recent breach at analytics vendor Mixpanel. Mixpanel suffered a breach on November 8th, 2025, after an SMS phishing (smishing) attack enabled threat actors to compromise its systems.

"A recent cybersecurity incident involving Mixpanel, a third-party data analytics provider, has impacted some Pornhub Premium users," reads a PornHub security notice posted on Friday.

"Specifically, this situation affects only select Premium users. It is important to note this was not a breach of Pornhub Premium's systems. Passwords, payment details, and financial information remain secure and were not exposed."

PornHub says it has not worked with Mixpanel since 2021, indicating the stolen records are historical analytics data from 2021 or earlier.

Mixpanel says the breach affected a "limited number" of customers, with OpenAI and CoinTracker previously disclosing they were affected.

This is the first time it has been publicly confirmed that ShinyHunters was behind the Mixpanel breach.

When contacting PornHub, the company did not provide additional comment to BleepingComputer beyond the security notice.

PornHub search and watch history exposed

Today, BleepingComputer learned that ShinyHunters began extorting Mixpanel customers last week, sending emails that began with "We are ShinyHunters" and warned that their stolen data would be published if a ransom was not paid.

In an extortion demand sent to PornHub, ShinyHunters claims it stole 94GB of data containing over 200 million records of personal information in the Mixpanel breach.

ShinyHunters later confirmed to BleepingComputer that they were behind the extortion emails, claiming the data consists of 201,211,943 records of historical search, watch, and download activity for the platform's Premium members.

A small sample of data shared with BleepingComputer shows that the analytic events sent to Mixpanel contain a large amount of sensitive information that a member would not likely want publicly disclosed.

This data includes a PornHub Premium member's email address, activity type, location, video URL, video name, keywords associated with the video, and the time the event occurred.

Activity types seen by BleepingComputer include whether the PornHub subscriber watched or downloaded a video or viewed a channel. However, ShinyHunters also said the events include search histories.

The ShinyHunters extortion group has been behind a string of data breaches this year by compromising various Salesforce integration companies to gain access to Salesforce instances and steal company data.

The threat group is linked to the exploitation of the Oracle E-Business Suite zero-day (CVE-2025-61884), as well as to Salesforce/Drift attacks that impacted a large number of organizations earlier this year.

More recently ShinyHunters conducted a breach at GainSight that allowed the threat actors to steal further Salesforce data from organizations.

With it now confirmed that ShinyHunters is also behind the Mixpanel breach, the threat actors are responsible for some of the most significant data breaches in 2025, impacting hundreds of companies.

ShinyHunters is also creating a new ransomware-as-a-service called ShinySpid3r, which will serve as a platform for them and threat actors associated with Scattered Spider to conduct ransomware attacks.

tines

Break down IAM silos like Bitpanda, KnowBe4, and PathAI

Broken IAM isn't just an IT problem - the impact ripples across your whole business.

This practical guide covers why traditional IAM practices fail to keep up with modern demands, examples of what "good" IAM looks like, and a simple checklist for building a scalable strategy.


文章来源: https://www.bleepingcomputer.com/news/security/pornhub-extorted-after-hackers-steal-premium-member-activity-data/
如有侵权请联系:admin#unsafe.sh