Residential security company Brinks Home has disclosed that hackers breached some of its systems and are threatening to leak allegedly stolen data.
The company identified the attack on July 20 and immediately activated its incident response procedure to contain the breach.
William Niles, CEO at Brinks Home, said that the company’s team was working with “leading forensics experts to address this issue.”
The intrusion did not impact in any way the company’s alarm monitoring and system functionality.
At the beginning of the week, the ShinyHunters extortion gang claimed the attack on Brinks Home, alleging that they stole more than 4.9 million Salesforce records with personally identifiable information (PII).
Brinks Home generates approximately $830 million in annual revenue, employs up to 1,500 people, and provides home security services to more than 1 million customers across the United States, Canada, and Puerto Rico.
It provides home security systems and services, like sensors, panels, and cameras, as well as smart home automation products (e.g., locks, thermostats, plugs).
In a conversation with BleepingComputer, ShinyHunters said that they breached Brinks Home on July 13 in a Microsoft Entra voice phishing (vishing) attack.
During this type of social engineering attack, the threat actor calls an employee and convinces them to complete a Microsoft Entra authentication or registration process, resulting in the hacker getting access to the victim’s account.
According to the threat actor, they exfiltrated more than 1.1 million rows of customer data from the “Contacts” Salesforce Object.
ShinyHunters also said that they stole more than 4,000 rows of PII data associated with Brinks Home employees, including full names, email addresses, job titles, and phone numbers.
Additionally, the extortion group claimed to have stolen more than 3.8 million customer support chat logs from the Brinks Care Cresta instance.
BleepingComputer has not reviewed any of the data allegedly stolen from Brinks Home and has been unable to verify the accuracy of Shiny Hunter’s claims.
However, Brinks Home confirmed that the attacker “has threatened to release information it claims to have taken” and that “such material may be posted publicly.”
In the latest updates on the incident, the company said that it was investigating and had “not yet confirmed exactly what information was involved or whose.”
“If we determine that your information was affected, we will notify you and explain what steps, if any, you should take,” Brinks Home says in an FAQ for the incident.
The company is warning that threat actors may exploit the incident by sending fraudulent messages impersonating Brinks Home or other parties involved in the response.
Customers are advised not to respond to suspicious communication or click on any links and to delete the message instead.
Security teams log 54% of successful attacks and alert on just 14%. The rest move through your environment unseen.
The Picus whitepaper shows how breach and attack simulation tests your SIEM and EDR rules so threats stop slipping by detection.
Health-ISAC warns of rising ShinyHunters data theft attacks on healthcare
Ernst & Young data breach claimed by ShinyHunters extortion gang
DentaQuest data breach exposed info of 2.6 million accounts
ShinyHunters data leaks fuel $2,000 sextortion email scam
Abbott probes two cyber incidents amid extortion claims
“It provides home security systems and services, like sensors, panels, and cameras, as well as smart home automation products (e.g., locks, thermostats, plugs).” Oh the irony. A company in the business of security, is not secure themselves.
Anthropic confirms Claude is down worldwide
OpenAI models used Artifactory zero-days to escape to the internet
Windows 11 KB5101684 update released with 42 changes and fixes
Uncover shadow AI apps, agents, and risky data sharing. Get started in 5 min.
Overdue a password health-check? Audit your Active Directory for free
Pixellot discovered and secured hundreds of unmanaged AI agent identities in weeks, not months. Download the case study for how.
Stay one step ahead of new threats in the new year. Join Huntress for the monthly Tradecraft Tuesday.
Your Scanners Are Green. Your Pipeline Might Not Be. Here’s How to Close the Gap.
Terms of Use – Privacy Policy – Ethics Statement – Affiliate Disclosure
Read our posting guidelinese to learn what content is prohibited.



