Figure Data Breach Affects Nearly 1 Million User Accounts

Figure-Data-Breach-Affects-Nearly-1-Million-User-Accountsdata

Figure Technology Solutions Data Breach Exposes Sensitive Information

A recent data breach at Figure Technology Solutions, a US-based blockchain fintech firm, has exposed sensitive information from nearly 1 million accounts.

Details of the Breach

The breach, which was initially reported to have affected only a limited number of files, was carried out by the ShinyHunters group using social engineering tactics against an employee.

According to data breach notification service Have I Been Pwned, the exposed data includes over 900,000 unique addresses, as well as names, phone numbers, physical addresses, and dates of birth. The compromised data dates back to January 2026.

ShinyHunters’ History of Attacks

ShinyHunters, a group known for its voice phishing campaigns, had previously listed Figure Technology Solutions as one of its targets, along with 2.5 GB of data purportedly belonging to loan applicants.

  • CrowdStrike
  • Betterment
  • SoundCloud
  • Match Group, which owns popular dating services such as Tinder, Hinge, OkCupid, and Meetic

Method of Attack

The breach at Figure Technology Solutions is the latest in a series of attacks carried out by ShinyHunters, which has been targeting companies using Okta, Google, and Microsoft single sign-on accounts.

The group’s tactics involve using social engineering to trick employees into divulging sensitive information, which is then used to gain unauthorized access to company systems.

Importance of Robust Security Measures

The exposure of sensitive information from nearly 1 million accounts at Figure Technology Solutions highlights the ongoing threat posed by social engineering attacks and the importance of implementing robust security measures to protect against such threats.



About Author

en_USEnglish