➤Summary
June 2022: Kaduu’s Dark Web Monitoring Research Team finds large data leak with personalized account data
Famous Japanese record chain store and music distributor, DiskUnion, has suffered a full-scale cyber attack on June 24, 2022. DiskUnion has been known as a place to buy and sell disks, vinyls, proudly stating “We buy your records higher than anywhere!”.
It first became known that diskunion.net is hacked due to its database being rapidly spread over darknet at 4:42CEST the same day 24.06.2022.
Kaduu Team has analysed leaked files immediately after obtaining them the day of incident. We saved you time and gathered the most important facts about this data leak:
DiskUnion, from their side, reacted almost immediately to the incident by shutting down their website. The company also have acknowledged the data leak and informed all the users by email in the shortest delay. As of July 4, as seen on the website, DiskUnion have fully suspended website activity during the investigation process.
Fast incident reaction – 10, lack of encryption – 0. Result: massive data leak and hundreds of thousands users being victims of targeted attacks for another several months.
We believe that threat actors might be connected to, if not coming, from Russia. They have been sharing information previously in Russian, moreover, the original DiskUnion data leak has been shared with the following screenshot:
This is a screenshot from a Russian tool, that analyses email-password “uniqueness” and provides some insights, for example, how many Russians have been affected by this data breach. This screenshot has been shared to prove authenticity of the database and to show that 699k pairs of emails and passwords have not been seen previously in known and publicly available data leaks.
Follow Kaduu News for more articles and stay cyber secured.
Most companies only discover leaks once it's too late. Be one step ahead.
Ask for a demo NOW →