LIVE REPORTING Loading...

Sysco Allegedly Breached as ShinyHunters Claims 61 Million Salesforce Records

ShinyHunters claims Sysco was breached and alleges more than 61 million Salesforce records containing customer, employee, and internal corporate data were compromised.
Screenshot of the ShinyHunters leak site showing Sysco Corporation listed as an alleged victim with a claim of more than 61 million Salesforce records exposed.
ShinyHunters alleges it stole more than 61 million Salesforce records from Sysco, including customer, employee, and internal corporate information, and is threatening a public data release.

ShinyHunters has added Sysco Corporation to its extortion portal, claiming to have compromised more than 61 million Salesforce records containing customer information, employee data, and internal corporate records.

The claim was published as part of a new wave of listings that appeared on the group’s leak site and includes a demand for contact before a stated deadline of June 18, 2026.

The allegations remain unverified. BreachNews has not independently verified the authenticity of the claimed data, nor confirmed that any records originated from Sysco systems.

Sysco is one of the world’s largest food distribution companies, serving restaurants, healthcare facilities, educational institutions, hospitality providers, and other organizations across North America and international markets.

Large Salesforce dataset allegedly compromised

According to the listing, the alleged breach involves more than 61 million records stored across multiple Salesforce tables.

The group claims some of the records contain customer information, employee data, and internal corporate records. No technical details regarding the alleged intrusion were provided.

The listing does not specify whether the data originated from a direct compromise of Salesforce infrastructure, a third-party integration, credential theft, or access to a customer-managed Salesforce environment.

At the time of publication, no sample files had been publicly released by the group.

Part of broader extortion activity

Sysco joins a growing list of organizations recently added to the ShinyHunters leak site. Earlier this week, the group threatened several high-profile organizations with public data releases in what appears to be an expanding extortion campaign.

BreachNews recently reported on additional alleged victims including the Council of Europe, American Tower, JCPenney, Madison Square Garden Sports, Ralph Lauren, and Nexstar in a separate roundup of leak site activity.

The group is using a familiar extortion strategy, publishing alleged victim names and data descriptions while issuing public deadlines intended to pressure organizations into negotiations.

The posting warns that data could be released publicly if contact is not established before the stated deadline.

Company has not issued public statement

Because the claims originate solely from the threat group’s leak site, the scope and authenticity of the alleged compromise remain unclear.

At the time of publication, Sysco had not issued any public statement addressing the claims.

BreachNews will update this article if Sysco confirms an incident or additional evidence emerges regarding the alleged exposure.

Picture of m00s3c

m00s3c

Moose (@m00s3c) is the author of BreachNews, focusing on data breach intelligence, dark web monitoring, and threat analysis. His work involves analyzing breach claims, reviewing leaked datasets, and tracking threat actor activity to provide clear, factual reporting.

Related Posts

Newsletter signup

Get the latest data breach and security news.

Please wait...

Thank you for signing up!

BREACHNEWS.COM

Support Independent News.

Help support breach monitoring, investigations, infrastructure, and reporting.

Support the site