Skip to main content

AT&T paid big bucks to a hacker to delete stolen customer data, report claims

AT&T Storefront with logo.
AT&T

Following AT&T’s admission on Friday that a security breach had impacted tens of millions of its customers, a new report claims that the carrier paid around $370,000 to the hacker to delete all of the stolen data.

The payment was made in cryptocurrency in May, and as part of the deal, the hacker had to provide a video that proved the data had been deleted, Wired reported on Sunday.

Recommended Videos

The news site carried out its own investigations into the payment, and concluded that the transaction did indeed take place.

The telecom giant reportedly negotiated with the hacker through a security researcher calling himself Reddington. The researcher was apparently enlisted by the hacker to help, and AT&T paid him a fee for acting as the intermediary. Wired said the hacker had originally demanded $1 million to delete the data, but ended up accepting around a third of that.

Reddington shared the deletion video with the news site, adding that he was satisfied that it showed the entirety of the stolen dataset being wiped.

The perpetrator is believed to be part of the ShinyHunters hacking group that’s also believed to have been involved in stealing data from unsecured storage accounts operated by U.S. cloud computing company Snowflake.

AT&T has yet to make any public comment about the apparent payment. Digital Trends has reached out to the company for comment and we will update this article when we hear back.

AT&T revealed on Friday that the stolen data included phone call and text message records — but not the actual content — of “nearly all of AT&T cellular customers” from May 1, 2022 to October 31, 2022, as well as on January 2, 2023. The records identify other phone numbers that an AT&T wireless number interacted with during this time, including AT&T landline (home phone) customers, the company said.

It said it didn’t believe the data was publicly available (this now makes more sense in light of Wired’s report), but added that it would nevertheless notify current and former customers if their information was involved.

It also confirmed that the downloaded data didn’t include details such as Social Security numbers, dates of birth, or other personally identifiable information.

The hack is the second this year to impact AT&T. In March, a breach affected 7.6 million current customers and 65.4 million former ones. Personal information such as names and Social Security numbers was stolen in that attack.

Trevor Mogg
Contributing Editor
Not so many moons ago, Trevor moved from one tea-loving island nation that drives on the left (Britain) to another (Japan)…
Samsung Galaxy Z Flip 7: the upgrade we’ve been waiting for?
Thre Flip 7 models next to each other

I never really thought that I'd want to go down the route of owning a flip phone, ever since I swore off my Nokia in the early 2000s (you know, the one with the weird felt covering and tiny notification window).

Fast forward two decades, and I'm considering rejoining the race, thanks to the Samsung Galaxy Z Flip 7. Coming in at $1,100, it's not cheap, but it's definitely something different compared to the world of black rectangles, and it it feels like Samsung’s Flip family has finally come of age.

Read more
I used the Galaxy Z Fold 7, here’s why I’m completely smitten
The back of the Galaxy Z Fold 7

We’ve waited several years for Samsung to join the party, but it’s finally here: Samsung has followed rivals like Oppo, OnePlus, and Honor in building a thinner, lighter, and sleeker Galaxy Z Fold 7. It’s an impressive feat of engineering and a major upgrade over previous years.

It’s easy to consider the Fold 7 nothing more than an update to the Galaxy Z Fold 6, but in many ways, it feels like a huge step forward, not just for Samsung but for all folding phones. I spent a few hours with the Galaxy Z Fold 7 in an exclusive preview, and here’s why I absolutely love what Samsung has done this year.

Read more
I tried the Samsung Galaxy Watch 8 series – they’re sleek, but with a lot to prove
Watch 8 on a wrist

Trying out the Samsung Galaxy Watch 8 and Watch 8 Classic is a tough gig - not in terms of it being a hardship to try out two high-end models, but that it's impossible to assess them with only 30 minutes’ use.

I can easily talk about the improved design and the fit of the straps etc, but the real changes are within the health ecosystem, and they'll need sustained testing to really understand if they're any good.

Read more