ShellCodeX
Tools β€’ Events β€’ News β€’ Insights
SEO Checker
Victim Claim

Sharecare, Inc.

● Listed in the last 48h
shinyhunters πŸ‡ΊπŸ‡Έ United States Healthcare sharecare.com
Claimed by shinyhunters
Listed on leak site 14 Aug 2026
Reported attack date 13 Aug 2026
Group claims tracked 63
Unverified claim. This entry reproduces a listing published by the shinyhunters group on its own extortion site. Attackers routinely exaggerate or fabricate victims. Nothing here confirms that Sharecare, Inc. suffered a breach, or what data was actually taken.

About the organisation

This Company data was published due to them hiring a very incompetent and unskilled negotiator. If you choose incompetency to negotiate for you, that is on you. We will be publishing companies data who are negotiating with us, without a warning if negotiators continue to take us as misinformed individuals and BS us. Over 3.4 million Salesforce records containing some PII and 28GB+ of internal corporate data was compromised. The Company failed to reach an agreement with us despite our incredible patience, all the chances and offers we made. They don't care. | Size: 25GB+ (compressed) | Updated: 13 August 2026 | SHA256: 195842b8a53e8d7fe63238dbed753c1c28a86034ca98f99527ef743528b6cc45

What the listing means

Sharecare, Inc. appeared on the shinyhunters leak site on 14 August 2026. Groups publish a victim once negotiations stall or as pressure during them, so a listing usually means data was already exfiltrated. This group has published 10 claims in the last 30 days and remains active.

Recommended actions

  • Treat any unsolicited message referencing Sharecare, Inc. as suspicious β€” leaked data gets weaponised for phishing within days.
  • If you hold an account on sharecare.com, change that password now, update it anywhere you reused it, and enable two-factor authentication.
  • Other Healthcare organisations should review this group's known TTPs and validate detection coverage against them.
  • Watch for follow-on extortion: stolen data is often re-leaked or resold after the initial listing.
  • A leak-site listing is a claim made by the attacker, not a confirmed breach β€” check the organisation's own disclosures before acting on it.

Leak-site evidence

Listing URL https://www.ransomware.live/id/U2hhcmVjYXJlLCBJbmMuQHNoaW55aHVudGVycw==