SHINDO2

Dairyman

Unauthorized accessSize not disclosed

POSSIBLE LEAKPostal address / Phone numberInvestigating

Open in the live monitor ▶
Disclosed
Jul 23, 2026
Detected
Jul 16, 2026
Detection to disclosure
7 days
Leak
Leak possible
Type
Unauthorized access
Status
Investigating
Security spend
Not checked yet
Compensation
Not announced

What leaked

IdentityCustomer names
ContactAddress, Phone number

Who is affected

  • Customers

Cause

Customer data temporarily kept in a contractor's cloud shared folder during a sales-system data migration was accessed without authorization

Timeline

  1. Unauthorized access to the contractor's cloud storage
  2. Report received from the contractor
  3. First disclosure

Response

  • Blocked the entry point
  • Forensic investigation
  • Vendor review

Access to the shared folder stopped; an outside security firm investigating cause and scope; the contractor's data-handling practices under review

What you should do

  1. Treat refund or apology calls and texts as scams. Call back only on the number from the official site
  2. Watch for unexpected mail or invoices; your address is hard to change
  3. Check the company's notice to see if you're affected

Lessons for companies

  1. Put security requirements, audit rights and reporting deadlines in vendor contracts
  2. Data outlived the contract. Always get proof of deletion and set retention limits
  3. Report to the PPC: preliminary in 3–5 days, final in 30 (60 if malicious)
  4. Run red teaming and AI-assisted hardening, and publish how much you invest

Sources