Figure Technology Confirms Customer Data Breach After Social Engineering Attack

TheNewsCryptoPublicado a 2026-02-14Actualizado a 2026-02-14

Resumen

Figure Technology, a blockchain-based lending firm, has confirmed a data breach resulting from a social engineering attack. Hackers tricked an employee into providing access, leading to the theft of approximately 2.5 GB of customer data, including names, addresses, birth dates, and phone numbers. The group ShinyHunters claimed responsibility and released the data after the company refused to pay a ransom. No financial information or passwords were confirmed to be compromised. The company has launched an investigation, notified affected customers, and is offering free credit monitoring. Cybersecurity experts emphasize that such attacks target human vulnerabilities rather than technical flaws.

Figure Technology, a publicly traded blockchain-based lender company, has confirmed that hackers gained access to customer information by tricking an employee through a social engineering scheme. As per the report from TechCrunch, attackers claimed that they had released 2.5 gigabytes of stolen data after the company refused to pay a ransom.

How did the hack happen?

One of the staff members was manipulated by an outside actor, which allowed the attacker to download the files using the employee’s legitimate account. According to the company, the suspicious activity was blocked quickly, and forensic investigations have been launched. A report from TechCrunch said that the stolen files may include full names, home addresses, dates of birth, and phone numbers. Still, there is no confirmation that the passwords or financial assets were accessed.

The cybercrime group ShinyHunters claims responsibility, and one alleged member said that the breach is part of the wider campaign targeting organizations that use the identity and login provider Okta. The group alleged that it had released about 2.5 GB of data after the company refused the ransom demands. The company says that it is now notifying affected individuals and offering free credit monitoring with strong internal security controls.

Expert’s Advice

Cybersecurity experts warn that social engineering attacks don’t break the software; instead, they trick humans, and criminals may pretend to be IT staff and send fake approval requests with some urgent messages to pressure the victims. Once the access is granted, they operate as legitimate users. Right now, investigators are still working to confirm which file has been stolen and how many people are affected. So further updates are expected once the forensic review is complete.

Highlighted Crypto News:

KuCoin Institutional Premiere 2026 Highlights Long-Term Growth and Market Resilience

TagsCrypto ScamCryptocurrency

Preguntas relacionadas

QWhat type of attack did Figure Technology experience that led to the customer data breach?

AFigure Technology experienced a social engineering attack where hackers tricked an employee to gain access to customer information.

QWhich cybercrime group claimed responsibility for the attack on Figure Technology?

AThe cybercrime group ShinyHunters claimed responsibility for the attack.

QWhat specific customer information was potentially exposed in the data breach according to the TechCrunch report?

AAccording to the TechCrunch report, the stolen files may include full names, home addresses, dates of birth, and phone numbers.

QWhat action did the attackers take after the company refused to pay the ransom?

AAfter the company refused to pay the ransom, the attackers claimed to have released about 2.5 gigabytes of stolen data.

QWhat is the company doing to assist the affected individuals following the breach?

AThe company is notifying affected individuals and offering them free credit monitoring.

Lecturas Relacionadas

9.42 Million Retail Investors Compete for Changxin Technology, Who Got Allotted?

Evergreen Technology's IPO subscription results are now available. On July 20, the domestic memory chip giant announced the offline preliminary allotment results and online lottery results for its IPO. A total of approximately 9.43 million retail investors participated in the online subscription, generating 770,000 winning lots with a final winning rate of about 0.4714%, setting a record for new shares on the STAR Market. After triggering a clawback mechanism from institutional to retail investors, the online retail allocation was significantly increased to 3.851 billion shares. Simultaneously, 285 institutional investors participated in the offline subscription, ultimately receiving 2.173 billion shares at an allotment rate of approximately 0.1756%. Leading insurers and public funds were among the major recipients. Notably, Liang Wenfeng, founder of the major AI model company DeepSeek, through his quantitative investment firms Ningbo Huanfang Quantitative and Zhejiang Jiuzhang Asset, secured the largest share among private funds, with a total allotment worth approximately 175 million yuan. Estimates suggest potential profits could reach 730 million yuan if Evergreen Technology's market capitalization reaches 3 trillion yuan post-listing. The company is expected to list on July 27 and could become the highest-valued tech stock on the A-share market, with various brokerages providing valuations ranging from 1 trillion to over 4 trillion yuan. However, recent significant corrections in global tech stocks may impact its post-listing performance. (Character count: 1,196)

marsbitHace 44 min(s)

9.42 Million Retail Investors Compete for Changxin Technology, Who Got Allotted?

marsbitHace 44 min(s)

L2 'Recalibration': When L1 Becomes Its Own Rollup, What Is Ethereum's Endgame?

The article discusses the evolving relationship between Ethereum's Layer 1 (L1) and Layer 2 (L2) solutions, moving beyond the initial "L2 for scaling" model. As Ethereum L1 itself scales (increasing Gas Limit, statelessness, zkEVM), the unique value proposition of L2s shifts from merely providing cheap execution to offering differentiated features like application-specific optimization, privacy, and flexible governance. The piece explores three key themes: 1. **L2's New Role:** L2s are transitioning from a pure scaling technology to a spectrum of execution environments with varying degrees of security inheritance from Ethereum L1. 2. **Interoperability as State Trust:** Solving L2 fragmentation is less about cross-chain bridges and more about enabling faster, trust-minimized state verification between environments. This involves initiatives like faster L1 finality, intent-based architectures (Open Intents Framework), and native account abstraction. 3. **Blurring Layers:** With the potential integration of zk-proofs into L1 validation (making L1 akin to its own "Rollup") and the concept of "Native Rollups," the rigid boundary between L1 and L2 may fade. The future could be a unified system with multiple execution domains (for DeFi, gaming, privacy, etc.) sharing a common security, settlement, and state framework. In conclusion, Ethereum's goal is not to abandon L2s or re-centralize everything on L1, but to re-integrate the fragmented user experience—liquidity, accounts, applications—while preserving the scaling benefits of a multi-environment ecosystem. The endgame is a cohesive "one chain" feeling for users, powered by diverse but securely interconnected execution layers.

marsbitHace 1 hora(s)

L2 'Recalibration': When L1 Becomes Its Own Rollup, What Is Ethereum's Endgame?

marsbitHace 1 hora(s)

Trading

Spot
活动图片