SHINDO2

JCV

Account takeoverSize not disclosed

POSSIBLE LEAKPostal address / Phone numberInvestigating

Open in the live monitor ▶
Disclosed
Aug 18, 2026
Detected
Aug 15, 2026
Detection to disclosure
3 days
Leak
Leak possible
Type
Account takeover
Status
Investigating
Security spend
Not checked yet
Compensation
Not announced

What leaked

IdentityName, address, email address, phone number
ContactName, address, email address, phone number, Name, address, email address, phone number, Name, address, email address, phone number
Communications & contentInformation written in email bodies

Who is affected

  • Customers
  • Other contacts

Cause

Unauthorized access to the help-desk email account

Timeline

  1. Unauthorized access detected; security tightened the same day
  2. First disclosure

Response

  • More monitoring
  • Forensic investigation

Analyzed access logs and tightened security; checking cause, scope and whether any data leaked

What you should do

  1. Don't open links in emails from this company. The apology email itself may be fake
  2. Treat refund or apology calls and texts as scams. Call back only on the number from the official site
  3. Watch for unexpected mail or invoices; your address is hard to change
  4. You can be affected without ever using this service (parcel recipients etc.). Check any notice you receive
  5. Check the company's notice to see if you're affected

Lessons for companies

  1. Report to the PPC: preliminary in 3–5 days, final in 30 (60 if malicious)
  2. Run red teaming and AI-assisted hardening, and publish how much you invest

Sources