Overview
- A handle calling itself SHADOWBYT3$ has claimed to have exfiltrated roughly 859MB of data tied to systems using the TINYpulse employee-feedback platform.
- The alleged files are said to include employee names, email addresses, survey responses, analytics reports, bank statement PDFs, W-9 tax forms, and workplace feedback.
- TINYpulse is a third-party tool for employee engagement and surveys, which would explain why internal feedback and progress records appear in the claimed dataset.
- Reporting so far is unverified and Nintendo has not publicly confirmed the incident or provided details about scope, timing, or any response to the claim.
- The report follows a string of prior incidents involving Nintendo and related companies, such as the 2020 Gigaleak and the 2024 Game Freak breach, and could increase risks of identity theft, targeted fraud, and regulatory scrutiny if proven true.