All breaches
RingCentral data breach1.6M accounts compromised on 2026-07-27
Verified
RingCentral (ringcentral.com) was the source of a data breach dated 2026-07-27, exposing 1,596,490 accounts. The details below are mirrored from Have I Been Pwned and reflect the source's account of the incident at the time of publication.
Incident Report
| Target Organization | RingCentral |
|---|---|
| Source Name | RingCentral |
| Domain | ringcentral.com |
| Breach Date | 2026-07-27 |
| Added to HIBP | 2026-08-13 |
| Accounts Compromised | 1,596,490(1.6M) |
| Data Exposed | Email addressesNamesPhone numbersPhysical addresses |
| Status | Verified by HIBP |
Description
In July 2026, the cloud-based business communications platform RingCentral was the target of a ShinyHunters "pay or leak" extortion campaign. The group subsequently published data they claimed was obtained from the platform, which included 1.6M unique email addresses along with names, physical addresses and phone numbers. In their disclosure notice, RingCentral advised that the incident affected "a limited portion of RingCentral customers" and that it was communicating directly with those affected.
Disclaimer
HackerFeeds does not engage in the exfiltration, downloading, taking, hosting, viewing, reposting, or disclosure of any stolen information. All breach data reported here is sourced from publicly available threat intelligence feeds for awareness purposes only.

