IT Pro is supported by its audience. When you purchase through links on our site, we may earn an affiliate commission. Learn more

FBI hacker is selling Robinhood customer data on hacking forum

The threat actor is looking for a minimum offer of “five figures” for the data, which includes seven million email addresses

The hacker behind last week’s Robinhood data breach is now selling the company's customer data on a hacking forum.

Known as ‘pompompurin’, the threat actor - who also claimed responsibility for the recent hack on the FBI's email system - is looking for a minimum offer of “five figures” for the "highly valuable" data, which includes seven million email addresses.

However, the threat actor emphasised that the sensitive data of 310 customers, such as name, date of birth, and zip code, will not be available to purchase “at this current point of time”.

The sensitive data was obtained through SendSafely, a file transfer system used by Robinhood to verify users’ identities when they set up an account. Out of the 310 customers who had had their ID cards stolen by ‘pompompurin’, 10 had more extensive details leaked.

The hacker criticised Robinhood for concealing the fact that the ID cards had been stolen, according to screenshots from the hacking forum obtained by BleepingComputer.

In a blog post published on 8 November, the online trading platform said it was in the process of notifying 310 customers that their personal data had been stolen. However, it didn’t specifically mention the theft of ID cards, despite CSO Caleb Sima’s stating that the company would “be transparent and act with integrity”.

IT Pro has contacted Robinhood for comment.

Related Resource

How to reduce the risk of phishing and ransomware

Top security concerns and tips for mitigation

Large letter 'O' against a background of a city - whitepaper from MimecastFree download

‘Pompompurin’ made headlines on Monday by claiming responsibility for exploiting the FBI’s systems to send fake cyber security alerts. In an interview with security researcher Brian Krebs, the threat actor said they wanted to draw attention to the security vulnerability in the Law Enforcement Enterprise Portal (LEEP) web app.

‘Pompompurin’ is named after a dog character introduced by the Japanese company Sanrio, which echoes the use of the 'HelloKitty’ alias by the ransomware group responsible for the cyber attack on game developer CD Projekt earlier this year, with the popular cat character also being a product of Sanrio. The stolen data has also since resurfaced on a dark web auction self-described as “charity fundraising”.

Featured Resources

IT best practices for accelerating the journey to carbon neutrality

Considerations and pragmatic solutions for IT executives driving sustainable IT

Free Download

The Total Economic Impact™ of IBM Spectrum Virtualize

Cost savings and business benefits enabled by storage built with IBMSpectrum Virtualize

Free download

Using application migration and modernisation to supercharge business agility and resiliency

Modernisation can propel your digital transformation to the next generation

Free Download

The strategic CFO

Why finance transformation propels business value

Free Download

Recommended

SOC modernisation and and the role of XDR
Whitepaper

SOC modernisation and and the role of XDR

16 Mar 2023
Analysing the economic benefits of Trend Micro Vision One
Whitepaper

Analysing the economic benefits of Trend Micro Vision One

16 Mar 2023
More than a number: Your risk score explained
Whitepaper

More than a number: Your risk score explained

16 Mar 2023
The IT manager's guide to getting home in time for dinner
Whitepaper

The IT manager's guide to getting home in time for dinner

15 Mar 2023

Most Popular

The big PSTN switch off: What’s happening between now and 2025?
Sponsored

The big PSTN switch off: What’s happening between now and 2025?

13 Mar 2023
Pension Protection Fund confirms employee data exposed in GoAnywhere breach
ransomware

Pension Protection Fund confirms employee data exposed in GoAnywhere breach

24 Mar 2023
Online Safety Bill: Why is Ofcom being thrown under the bus?
Policy & legislation

Online Safety Bill: Why is Ofcom being thrown under the bus?

24 Mar 2023