Home All Breaches SHOULDVE_PAID_THE_FUCKING_RANSOM_Kemper-SHINYHUNTERS_.7z.001

SHOULDVE_PAID_THE_FUCKING_RANSOM_Kemper-SHINYHUNTERS_.7z.001

Database World ROC

This page documents a data breach listing tracked by Breach House. It summarizes the publicly advertised leak attributed to Database World ROC, including the affected entity, origin and the date the listing was first indexed.

Country
Discovered
2026-08-08
Breach ID
13836a2a1225

Breach Overview

In April 2026, the American insurance holding company Kemper Corporation was named by the ShinyHunters ransomware group in a "pay or leak" extortion campaign. According to the attackers, they gained access to Kemper's Salesforce environment through social engineering as part of a broader campaign targeting hundreds of organisations using the same method. The group later published tens of gigabytes of data that they claimed included internal directory data, Salesforce records, and Stripe payment logs. Among the 269k unique email addresses were names, phone numbers, physical addresses, and partial payment card information, including the last four digits, expiration dates, and card brands. Kemper confirmed the incident and stated that they had engaged third-party cybersecurity experts and notified law enforcement.

Dark Web Exposure

Cross-referenced against HaveIBeenRansom's dark-web index of ransomware leaks, breaches & infostealer logs.
0
found in Infostealer logs
0
found in Traditional breaches
0
found in Ransomware leaks
Emails exposed
••••
Internal
•••
External
•••
Distinct leaks
••
••••••••••••••••••••••••
•••••••••• · ••••••
••• emails
••••••••••••••••••••••••
•••••••••• · ••••••
••• emails
••••••••••••••••••••••••
•••••••••• · ••••••
••• emails
••••••••••••••••••••••••
•••••••••• · ••••••
••• emails
Full exposure is locked
See every breached email, the internal-vs-external split and each leak source behind this breach.
Want the complete picture — passwords, machines, full leak files? It's all searchable on HaveIBeenRansom.
Search this breach →
Original Post View Group: Database World ROC
Legal Disclaimer: This breach record is compiled from publicly advertised leak listings. Breach.house only records what the operators themselves publish in the open. We take screenshots of their public pages and keep the proof material they post there, so that a listing can be verified and its status tracked over time. We do not purchase data, we do not solicit or encourage its publication, we do not access any private system, and we do not alter anything we record. Nothing is offered for download here, and detailed content is not published on this page or anywhere else on the public site: access to it is restricted to vetted customers under contract, for incident response, due diligence and cyber-resilience work. Breach.house is not affiliated with, and does not act on behalf of, the operators who publish this material. If you represent an organisation or individual named here and want a record reviewed or removed, contact us and we will act on it.