Mystery hacker claims to have conducted one of the largest data heists in history

Data Breach
Image Credit: Shutterstock (Image credit: Shutterstock)

Personal information relating to roughly one billion Chinese citizens has reportedly been stolen in what could be one of the largest cyber heists in history.

An unknown threat actor has taken to underground forums to advertise a batch of 23TB of sensitive data, allegedly stolen from a database belonging to a Shanghai police department.

The data is said to contain people’s names, addresses, birth places, national ID numbers, phone numbers, and information on any criminal cases the individuals be involved in. The Wall Street Journal claims to have verified at least a small portion of the data.

The mystery attacker is asking for 10 bitcoin in exchange for the data, which translates to roughly $200,000 at the current market rate. 

A bug or a mishap?

According to a Bloomberg report, there has been no word from the Shanghai police, and the Cyberspace Administration of China is still silent on the matter as well.

But late last night, Changpeng Zhao, founder and CEO of cryptocurrency exchange Binance, tweeted that the company’s threat intelligence unit had detected a billion resident records going up for sale on the dark web, “likely due to a bug in an Elastic Search deployment by a gov agency".

“This has an impact on hacker detection/prevention measures, mobile numbers used for account takeovers, etc.,” he added. “It is important for all platforms to enhance their security measures in this area. Binance has already stepped up verifications for users potentially affected.”

He later added that the attack had "apparently" been made possible because a government developer wrote a tech blog that “accidentally included the credentials".

A spokesperson for Elastic Search later said Binance's team "incorrectly speculated" on the causes of the breach, adding that the statement is "factually inaccurate".

"Our company was not involved, and the reference to Elastic in stories is causing concern and confusion," the spokesperson told us. "There has been no data breach of Elastic in this case."

Bloomberg reports that some cybersecurity experts, on the other hand, believe “the breach involved a third-party cloud infrastructure partner", naming Alibaba, Tencent, and Huawei as among the largest providers serving the region.

Inevitably, an incident of this kind invites comparisons with previous high-profile cybersecurity breaches to have affected China.

In 2016, for example, personal information on dozens of Communist Party officials and industry figures - from Jack Ma to Wang Jianlin - was said to have been exposed on Twitter. While in 2020, a group of criminals stole sensitive data on more than 500 million users of domestic microblogging platform Weibo.

Edit, 7.7.2022 - A spokesperson for 

Sead is a seasoned freelance journalist based in Sarajevo, Bosnia and Herzegovina. He writes about IT (cloud, IoT, 5G, VPN) and cybersecurity (ransomware, data breaches, laws and regulations). In his career, spanning more than a decade, he’s written for numerous media outlets, including Al Jazeera Balkans. He’s also held several modules on content writing for Represent Communications.

Read more
Cartoon Phishing
One of the largest data leaks ever sees info on 1.5 billion people leaked online
Ethereum
Hackers steal over $1bn in one of the biggest crypto thefts ever
North Korean flag with a hooded hacker
FBI says North Korean Lazarus hackers were behind $1.5 billion Bybit crypto hack
An abstract image of padlocks overlaying a digital background.
Thousands of Bitcoin ATM users may have personal data leaked after breach
No broadband network
Massive online data breach sees 2.7 billion records leaked - here's what we know
A digital themed isometric showing a neon padlock in the foreground, and a technological diagram of a processor logic board in the background.
A top online gift card store may have exposed private data on hundreds of thousands of users
Latest in Security
Woman shocked by online scam, holding her credit card outside
Cybercriminals used vendor backdoor to steal almost $600,000 of Taylor Swift tickets
Woman using iMessage on iPhone
UK government guidelines remove encryption advice following Apple backdoor spat
Cryptocurrencies
Ransomware’s favorite Russian crypto exchange seized by law enforcement
Wordpress brand logo on computer screen. Man typing on the keyboard.
Thousands of WordPress sites targeted with malicious plugin backdoor attacks
HTTPS in a browser address bar
Malicious "polymorphic" Chrome extensions can mimic other tools to trick victims
ransomware avast
Hackers spotted using unsecured webcam to launch cyberattack
Latest in News
A collage of Ellie and Joel in The Last of Us season 2
The Last of Us season 2's new trailer teases a huge showdown between Bella Ramsey's Ellie and Pedro Pascal's Joel, but the big moment I'm waiting for is still being held back
Apple iPhone 16 Pro Max REVIEW
New iPhone 17 Air leak may have revealed some key specs – and how it compares to the iPhone 17 Pro Max
Gaming with AI
I asked Gemini to play a text-based adventure game with me and the AI whisked me away to a word-based fantasy
Apple iPhone 16 Review
Three iPhone 17 model dummy units appear in a hands-on video leak
The Samsung Galaxy S25 Edge on display the January 22, 2025 Galaxy Unpacked event.
New Samsung Galaxy S25 Edge may have revealed some key details – including its price
Quordle on a smartphone held in a hand
Quordle hints and answers for Monday, March 10 (game #1141)