Sextortion scammers use ShinyHunters breach data from Amtrak, Hallmark, Substack and others to demand $2,000 in Bitcoin

Scammers are using email addresses exposed in past ShinyHunters-linked breaches to send sextortion emails that demand $2,000 in Bitcoin. BleepingComputer says the campaign cites real breached companies including Amtrak, Hallmark, Substack, Betterment, CarGurus, ADT, Panera Bread, and McGraw Hill to make the threats look credible, but there is no evidence the sender actually hacked recipients' devices or recorded them.
Why it matters: People whose email addresses were exposed in earlier breaches may now face more believable extortion emails, even if their devices were never compromised. Affected users should not pay, should treat messages claiming webcam compromise with skepticism, and should secure accounts exposed in prior breaches with password changes and phishing awareness.

Sources

ShinyHunters data leaks fuel $2,000 sextortion email scam
Lawrence Abrams 2026.07.25 100% relevant
This article establishes a distinct follow-on scam campaign in which unrelated actors are weaponizing previously leaked ShinyHunters breach data to target exposed individuals with sextortion emails.
← Back to all stories