Kodak has confirmed that unknown attackers gained unauthorized access to a portion of corporate data its . The company said it has activated incident response procedures and is working with cybersecurity experts to determine the full extent of the breach.

The case adds to the ever-growing list of cyberattacks affecting large organizations worldwide, demonstrating that even companies with a long history and significant technological resources remain vulnerable to modern digital threats.
What do we know so far?
According to Kodak's official statement, the attackers gained temporary access to a limited amount of company data. Management has not clarified whether critical internal systems were affected or whether the breach was limited to specific infrastructure.
See also: Hacker group claims to have breached Novo Nordisk and demands $25 million
The company said that from the very beginning it activated an incident response team and began collaborating with external experts, with the aim of identifying data that may have been copied or extracted from its systems.
At the same time, Kodak maintains that its core business functions remain unaffected and that there is no indication of risk to the smooth operation of its services so far.
The shadow of ShinyHunters behind the attack
Although the investigation is still ongoing, attention has turned to the cybercriminal group ShinyHunters, which publicly claimed responsibility for the attack via a dark web leak platform.
The group claims to have stolen more than 2.2 million files containing personal customer information, corporate documents and internal information. The attackers threatened to release the data if the company was not contacted within a certain period of time.

These claims have not been officially confirmed by Kodak, however the threat of publishing data is now one of the most common blackmail tactics in the cybercrime world.
See also: iRhythm reveals data breach
Who is ShinyHunters?
ShinyHunters is considered one of the most active cyber-extortion groups in recent years. Its name has been linked to numerous large-scale attackstargeting businesses, universities, and technology service providers.
Over the past year, the group has been accused of attacks against hundreds of Salesforce, while also allegedly being linked to breaches involving customers of Snowflake and other cloud service providers.
These attacks have in common the theft of large amounts of data and their use as a means of financial extortion, without necessarily preceding encryption of systems via ransomware.
The connection to the Oracle vulnerability
Of particular interest is the fact that ShinyHunters recently claimed responsibility for a new wave of attacks that affected more than 100 organizations internationally. These attacks allegedly exploited a vulnerability in Oracle PeopleSoft, one of the most widely used enterprise software worldwide.
🔒 Protect your privacy with Proton VPN
Swiss VPN from the creators of Proton Mail — strict no-logs policy, strong encryption, and built-in NetShield that blocks ads, trackers, & malware.
- ✔ No-logs, based in Switzerland (except 14-Eyes)
- ✔ NetShield: blocks ads, trackers & malicious domains
- ✔ Covers all devices — free version available
The link is an affiliate link — SecNews may receive a commission at no additional cost to you. It does not affect the independence of our article writing.
While there is no evidence that the Kodak breach is related to the same vulnerability, the timing has raised the interest of security researchers, who are examining possible commonalities between the incidents.
See also: Council of Europe investigates ShinyHunters data breach allegations

The implications for businesses
The incident highlights once again the importance of protecting corporate data in an era where cyberattacks are becoming increasingly sophisticated and frequent.
For businesses like Kodak, the biggest threat is not just the potential loss of information but also the cost of restoration, legal liabilities, potential sanctions from regulatory authorities and, most importantly, damage to their reputation.
As the investigation continues, the Kodak case is yet another reminder that cybersecurity is no longer just a technical issue, but a core element of business strategy. The coming days will reveal whether the perpetrators’ claims are true and the true extent of an incident that has already raised serious concerns in the technology and information security community.
Source: www.bleepingcomputer.com
