Brinks Home has disclosed a cybersecurity incident after the ShinyHunters extortion group claimed it stole customer and employee data from the US residential security company.
The company detected the Brinks Home breach on 20 July and said it immediately began its incident response process. Its alarm monitoring and home security systems remain fully operational.
ShinyHunters claims it stole Salesforce records
ShinyHunters added Brinks Home to its data leak site earlier this week. The group claims it stole more than 4.9 million Salesforce records containing personally identifiable information.
According to the extortion group, the attack began on 13 July through a Microsoft Entra voice phishing, or vishing, attack. This tactic involves calling an employee and convincing them to approve an authentication request or account registration process.
That can give attackers access to a corporate account without needing to steal a password directly.
ShinyHunters said it exfiltrated more than 1.1 million rows of customer information from Brinks Home’s Salesforce Contacts object.
The group also claimed to have taken more than 4,000 employee records containing names, email addresses, job titles and phone numbers.
In addition, it alleged that it stole more than 3.8 million customer support chat logs from a Brinks Care Cresta instance.
Brinks Home has not confirmed affected data
Brinks Home confirmed that the attacker had threatened to release information it claims to have taken. The company warned that this material could be posted publicly.
However, it said the investigation is still ongoing. Brinks Home has not yet confirmed what information was involved or whose data may have been affected.
William Niles, CEO of Brinks Home, said the company is working with leading forensic experts to address the incident.
The company provides security systems, monitoring services and smart home products to more than one million customers across the US, Canada and Puerto Rico. Its services include alarms, sensors, cameras, panels, smart locks, thermostats and plugs.
Security monitoring was not affected
Brinks Home said the intrusion did not affect its alarm monitoring service or the functionality of its security systems.
The company said it will contact affected individuals if its investigation confirms that their information was involved. It will also explain any steps they may need to take.
At this stage, the alleged stolen data has not been independently verified.
Customers warned about follow-up scams
Brinks Home warned that attackers may use the incident to send fraudulent emails, messages or other communications impersonating the company or parties involved in the response.
Customers should avoid clicking links or replying to suspicious messages. Instead, they should delete the communication and use official channels if they need support.
Meta description: Brinks Home is investigating a claimed ShinyHunters breach after the extortion group threatened to leak alleged customer and employee data.


0 responses to “ShinyHunters Claims Brinks Home Breach and Threatens Data Leak”