ShinyHunters claims breach of the Council of Europe and threatens to leak employee, payroll, and medical data

ShinyHunters says it hacked the Council of Europe and stole 297 GB of internal data, including employee personal, payroll, and health information. The extortion group posted the organization on its leak site and claims to have exfiltrated more than 429,000 files from departments including HR, the Secretariat, the Parliamentary Assembly, and the European Directorate for the Quality of Medicines & HealthCare. The Council of Europe had not publicly confirmed the incident at the time of publication.
Why it matters: If true, this would expose highly sensitive personal and employment records tied to a major intergovernmental human-rights body, creating identity-theft, privacy, and targeting risks for staff. Affected users should watch for official breach notices and phishing, while defenders should treat this as a potentially serious extortion and data-exfiltration incident.

Sources

Council of Europe hacked in ShinyHunters' PeopleSoft heist
2026.06.15 97% relevant
This is a direct update to the Council of Europe breach story, adding that ShinyHunters says the intrusion was part of its broader Oracle PeopleSoft zero-day campaign and specifying the alleged volume and types of stolen files.
Council of Europe investigates ShinyHunters data breach claims
Sergiu Gatlan 2026.06.15 97% relevant
This article updates the same underlying event by adding that the Council of Europe has acknowledged it is investigating ShinyHunters' breach claims, while restating the gang's alleged scope of stolen HR, payroll, and medical records and the leak deadline.
ShinyHunters Claims Council of Europe Hack
Ionut Arghire 2026.06.15 100% relevant
This article appears to be the first concrete report of the claimed Council of Europe intrusion, naming the victim, threat actor, alleged data types, and extortion deadline.
← Back to all stories