Test and measurement equipment maker Fluke was hit by a ShinyHunters “pay or leak” extortion campaign in July 2026. After the company apparently declined to pay, the group published more than 100GB of allegedly stolen data, which has now been indexed by Have I Been Pwned as 821,100 exposed accounts.
The leaked corpus is largely corporate contact data — over 800,000 unique email addresses alongside names, phone numbers, physical addresses and a large batch of support cases. While no passwords or credentials appear to be included, this kind of verified contact and support-case data is prime fuel for targeted phishing and business email compromise, which are common precursors to credential theft and identity-based intrusions.
What to take away: exposed corporate email addresses and support histories give attackers the raw material to craft convincing spear-phishing against employees and customers. Organizations should treat affected addresses as elevated phishing targets, reinforce MFA, and watch for social-engineering attempts that reference legitimate support interactions.