惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

Recent Announcements
Recent Announcements
爱范儿
爱范儿
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
宝玉的分享
宝玉的分享
T
Tailwind CSS Blog
博客园_首页
IT之家
IT之家
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
博客园 - 三生石上(FineUI控件)
有赞技术团队
有赞技术团队
大猫的无限游戏
大猫的无限游戏
雷峰网
雷峰网
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
博客园 - 司徒正美
WordPress大学
WordPress大学
Last Week in AI
Last Week in AI
人人都是产品经理
人人都是产品经理
Jina AI
Jina AI
月光博客
月光博客
小众软件
小众软件
S
SegmentFault 最新的问题
量子位
阮一峰的网络日志
阮一峰的网络日志
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知

The Record from Recorded Future News

Taiwan charges two businessmen over alleged role in Chinese espionage campaign Former UK privacy chief preparing legal action against woman who reported him, minister says Spain arrests alleged supporter of pro-Russian hacktivist groups after FBI tip EU unveils cyber plan to reduce reliance on foreign AI systems Supreme Court allows Texas app law requiring age verification to take effect Britain plans to build autonomous AI 'Cyber Shield' to defend nation Major Japanese telco says cyberattack exposed 12 million emails UK cyber pledge draws only a handful of top firms despite ministerial appeal Canadian spy agency reports hacking three criminal groups in 2025 Attackers vote themselves $20 million in BONK cryptocurrency Major medical device manufacturer notifies nearly 4 million of breach Japanese teen arrested over cyberattack that disrupted anime streaming service Ukrainian media outlets now among 'priority targets' for Russian hackers Spyware found on phone of European Parliament member probing it Launch of UK's National Cyber Action Plan delayed amid Labour leadership crisis Supreme Court decision threatens EU-US data transfer agreement Teen suspect in Scattered Spider hacks is extradited to US US lifts export controls on Anthropic’s frontier cybersecurity AI models Japanese insurer, brewer, manufacturer and telecom disclose cyber breaches CIA chief highlights major shifts in agency’s tech approach House passes kids’ online safety bill, but Senate approval unlikely An intelligence budget 'super user' job is now in the hands of Russ Vought Justices rule that cellphone location histories are protected by the Fourth Amendment US racks up about 400 wins over illegal World Cup streaming sites US posts $10 million reward over Russian cyber campaign targeting Signal, WhatsApp Ukraine to use seized crypto from cybercrime group to buy war bonds Russia accuses Apple of ‘political censorship’ after VK apps removed from App Store Turla group adds more malware to Russia’s espionage efforts against Ukraine Russia used social engineering to breach prominent messaging accounts, Ukraine says FCC votes to toughen rules in bid to better protect undersea cables
Cruise giant Carnival confirms data breach affecting near...
Daryna Antoniuk · 2026-05-28 · via The Record from Recorded Future News

Cruise operator Carnival confirmed on Wednesday that hackers stole personal information, including passport and driver's license details, in an April cyberattack claimed by the ShinyHunters hacking group.

The company said the threat actor gained access to a limited portion of its IT environment last month after compromising an employee account. By the end of April, Carnival determined that the attacker had copied personal information from its systems.

The stolen data varies by individual but includes names, addresses, email addresses, phone numbers, dates of birth, driver's license numbers and passport numbers, according to the company.

Carnival did not disclose how many people were affected. However, a filing with Maine's attorney general's office indicates that nearly 6 million individuals may have had their information exposed.

"We acted swiftly to block the unauthorized activity and immediately began working with third-party security experts to further strengthen our security and conduct a thorough investigation," Carnival said in a statement.

Carnival, one of the world's largest cruise operators, owns brands including Princess Cruises, Holland America Line, Cunard and Costa Cruises. The company operates more than 90 ships worldwide and serves millions of passengers annually.

In April, ShinyHunters claimed it had obtained a large volume of Carnival data and attempted to extort the company to prevent the information from being published. The group eventually released what it said were 8.7 million records on its leak site, including data allegedly tied to the Mariner Society loyalty program operated by Holland America Line, one of Carnival's cruise brands.

At the time, Carnival acknowledged a phishing incident involving a single user account and said it was investigating the scope of the unauthorized activity. The company has not publicly attributed the attack to ShinyHunters.

"Complex incidents like this take time and careful investigation to understand what information was affected and who it belongs to, and then to ensure notifications are handled accurately," Carnival said on Wednesday, explaining why it took a month to publicly confirm the breach.

ShinyHunters is known for high-profile data theft and extortion campaigns targeting large organizations. Earlier this year, the FBI warned that hackers linked to ShinyHunters were demanding substantial ransom payments from companies after stealing data through compromises involving Salesforce environments. The group has also recently claimed responsibility for a breach at analytics company Mixpanel.

In 2019, Carnival disclosed a data breach involving employee email accounts that exposed information belonging to approximately 180,000 customers and employees. Regulators later fined Carnival $1.25 million over its handling of the incident. The company also reported another breach in 2021 involving unauthorized access to a limited number of email accounts.

Get more insights with the

Recorded Future

Intelligence Cloud.

Learn more.

Recorded Future

No previous article

No new articles

Daryna Antoniuk

Daryna Antoniuk

is a reporter for Recorded Future News based in Ukraine. She writes about cybersecurity startups, cyberattacks in Eastern Europe and the state of the cyberwar between Ukraine and Russia. She previously was a tech reporter for Forbes Ukraine. Her work has also been published at Sifted, The Kyiv Independent and The Kyiv Post.