Ransomware victim disclosure
← All victimsMatch Group
Claimed by Shinyhunters · listed 5 months ago
Status timeline
- ListedJan 27, 2026
- Data leakeddate unknown
At a glance
- Group
- Shinyhunters
- Status
- Data leaked
- Country
- United States
- Sector
- Technology
- Listed on leak site
- Jan 27, 2026
- Records
- 10M Records
About the victim
AI dossier — public-source company profileMatch Group, Inc. is a US-based technology company headquartered in Dallas, Texas, that owns and operates a portfolio of online dating platforms including Tinder, Hinge, Match.com, OkCupid, and Plenty of Fish. The company serves hundreds of millions of registered users globally across its brands. Match Group is publicly traded on NASDAQ and is one of the world's largest providers of dating and relationship services.
- Industry
- Online Dating & Social Networking
- Employees
- 1001-5000
- Founded
- 1993
Attack summary
Severity: critical — 10 million records from a dating platform represent large-scale exfiltration of consumer PII, likely including sensitive personal profile data (relationship preferences, location, photos, contact details), which constitutes regulated personal data under GDPR, CCPA, and similar frameworks. ShinyHunters has a credible track record of large-scale database breaches and the data is stated as already published.ShinyHunters claims to have exfiltrated approximately 10 million records from Match Group and has published the data after the company allegedly refused to pay a ransom. The group's post indicates the data has been fully disclosed as of 28 January 2026.
Data the group says was taken
AI dossier — extracted from the leak post- User account records
- Personally identifiable information (PII)
- Potentially dating profile data
- Potentially email addresses
- Potentially hashed or plaintext passwords
What the group claims
Records: 10M Records | Updated: 28 Jan 2026 | Note: Your greed is killing you. | Don't be an idiot like this company. Make the right decision; don't be the next headline. Get off your moral high horse and make the right decision for your stakeholders. PAY OR LEAK otherwise you'll be made an example of.
Source
Indexed 5 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

