SHINDO4

Duel Masters Support App

Usersup to155,000people

EXPOSEDPostal address / Date of birthSoftware defect · Contained

Open in the live monitor ▶
Disclosed
Jul 28, 2026
Leak
Exposed, access unknown
Type
Software defect
Status
Contained
Security spend
Measures, no amount
Compensation
Not announced

What leaked

IdentityFull name, Gender, Date of birth, Handle name
ContactAddress, Phone number, Email address
Account dataService ID, X user ID

How many

  • Users up to 155,000 people

Who is affected

  • Users

Cause

A technical flaw in user authentication meant that, under certain conditions, a third party could view users' personal information

Timeline

  1. Exposure began
  2. Vulnerability fixed
  3. First disclosure

Response

  • Patched

Vulnerability fixed on July 13, 2026

What you should do

  1. Don't open links in emails from this company. The apology email itself may be fake
  2. Treat refund or apology calls and texts as scams. Call back only on the number from the official site
  3. Watch for unexpected mail or invoices; your address is hard to change
  4. Check the company's notice to see if you're affected

Lessons for companies

  1. Report to the PPC: preliminary in 3–5 days, final in 30 (60 if malicious)
  2. Run red teaming and AI-assisted hardening, and publish how much you invest

Sources