Skip to main content
  1. Home
  2. Computing
  3. Features

Hackers leak facial recognition records tied to millions of Madison Square Garden visitors

Add as a preferred source on Google
Facial Recognition Composite
izusek/Getty Images / Getty Images

Madison Square Garden has spent years using facial recognition technology to monitor who enters its venues. Now, that same surveillance system is at the center of what could become one of the year’s most troubling privacy breaches.

The cybercrime group ShinyHunters has published a massive cache of data allegedly stolen from Madison Square Garden Entertainment after the company missed a ransom deadline. According to reports, the leak includes facial recognition records, customer information, internal security assessments, and other sensitive data tied to millions of visitors. While large-scale breaches have become depressingly common, this one feels different. Most data leaks involve passwords, email addresses, or financial information. This breach reportedly includes something far more personal: information connected to how people were monitored and identified in physical spaces.

When the security camera becomes the target

For years, MSG’s facial recognition program has been controversial. The company has used the technology across its venues to identify visitors and, in some cases, enforce policies that attracted scrutiny from privacy advocates and regulators. Critics have long warned that collecting large amounts of biometric data creates an attractive target for hackers. This breach appears to validate those concerns.

According to reports, the leaked files include biometric tracking information, internal risk assessments, background-check data, and records tied to attendees. The dataset allegedly includes customer correspondence, including messages from visitors who were concerned about being misidentified by facial recognition systems. If accurate, that means complaints about surveillance practices were stored alongside the surveillance data itself.

The breach that exposed more than customer records

What makes the incident particularly notable is the broader question it raises about surveillance technology. Organizations often justify facial recognition systems as tools for safety, security, or operational efficiency. But every camera, database, and profile creates another repository of highly sensitive information that must be protected. And the more comprehensive those records become, the more valuable they are to cybercriminals.

The breach also arrives less than a year after another major cybersecurity incident involving MSG, adding to questions about how organizations handle the growing volumes of personal information they collect. For now, many details remain unclear. The full scope of the leaked records has not been independently verified, and Madison Square Garden Entertainment has not publicly confirmed the extent of the breach. Still, the story may ultimately be bigger than one company. The incident highlights a reality that often gets overlooked in conversations about surveillance technology: collecting data is only half the equation. Protecting it may be the harder part. And when that protection fails, the consequences can extend far beyond a stolen password.

Shimul Sood
Shimul is a contributor at Digital Trends, with over five years of experience in the tech space.
Topics
Meta’s detection tool fails to identify photos generated by its own Muse Image AI
Meta has created an invisible watermarking tool called Content Seal that is embedded in all images generated by the Muse Image AI.
Meta AI identification tool.

Earlier this week, Meta announced two new AI products, namely, Muse Image and Muse Video. As the name suggests, these are generative AI tools for making photos and video clips using natural language text prompts. Soon after their rollout commenced, these tools sparked controversy because Meta had automatically opted in Instagram users, allowing others to use their publicly posted media and convert them into remixed AI content. But it appears that Meta courted another loss on its side of the court.

What's the problem?

Read more
Your Google AI Studio apps can finally have polished, presentable web links
AI Studio web apps can now use personalized subdomains
google ai studio logos

Google AI Studio has made building a web app surprisingly easy. You can describe what you want, refine the design through prompts, and publish the result without setting up a traditional development environment. An awkward point of friction comes after deployment, when the finished app still has to live behind a long, forgettable Cloud Run link.

Google is now cleaning up that final step. AI Studio lets you assign a deployed web app a personalized address under the “ai.studio” domain, such as “your-app-name.ai.studio.” A recognizable URL should make the project look more presentable in a portfolio, client demo, social post, or internal project page.

Read more
You can now check if a Google ad was made using AI
Google will auto-label its own AI ads, but third-party AI ads still rely on advertisers to come clean.
google-ads-ai-label

Ever looked at an ad and wondered if a real person made it or if it was AI generated in seconds? Google is now giving you a way to find out.

The company just announced a new AI transparency label that tells you whether an ad was created or edited using generative AI tools. The label lives inside Google's My Ad Center, and it is rolling out across Google Search, YouTube, and Discover globally.

Read more