← Back to feed
Breaches & RansomwareEmerging1 sourceSep 7, 2026 Β· 14:25via Ransomware.live

πŸ΄β€β˜ οΈ Aurora has just published a new victim : Jinny Beauty Supply

Brief

[distributors] Jinny Beauty Supply is one of the largest Korean-American wholesale beauty distributors in the US, operating 9 distribution centers from Doraville, Georgia to Commerce, California. They serve 7,400+ beauty supply stores and 2,800+ international distributors.

The exposed material includes:

A complete password vault export β€” 50+ plaintext credentials for PayPal, Braintree, Amazon Seller Central, eBay, Acumatica ERP (production), 12 state tax portals, FedEx, UPS, ShipStation, Microsoft 365, Google Analytics, and internal email. VMware hypervisor root credentials β€” vCenter and ESXi root passwords giving complete control over the entire virtual infrastructure.

911 scanned credit card authorization forms β€” full card numbers, CVV, expiry dates, and cardholder signatures for beauty supply store customers across 26 US states.

Read more on Ransomware.live→