← Council of Europe

2026 Council of Europe — ShinyHunters claims 297 GB HR/payroll exfiltration (investigating)

2026 Unknown records affected Share on X

Data compromised

Alleged HR/payroll exports, CVs, contracts, illness reports, bank details, performance reviews—Council investigating scope

Technical writeup

On June 15, 2026, ShinyHunters added the Council of Europe—the 46-member-state human-rights organization headquartered in Strasbourg—to its Tor leak site, claiming theft of more than 297 GB across 429,000+ files from HR, Secretariat, Parliamentary Assembly, and European Directorate for the Quality of Medicines & HealthCare systems. The group alleged payroll data covering more than 10,000 employees (2011–2026), 14,000+ CVs, contracts, purchase orders, absence/illness reports, bank account data, performance evaluations, names, IDs, addresses, phone numbers, dates of birth, tax/social-security data, and medical records, threatening public release if negotiations did not begin by June 16. SecurityWeek and BleepingComputer reported the claims; the Council told SecurityWeek it was “investigating the matter and assessing the situation” with no further comment at that stage. BreachHistory indexes the row with recordsAffected 0 until the organization or a regulator publishes a confirmed victim numerator.

Root cause

ShinyHunters extortion campaign; intrusion method not publicly confirmed

References