{"id":242416,"date":"2026-05-05T14:19:00","date_gmt":"2026-05-05T18:19:00","guid":{"rendered":"https:\/\/news-you-need.com\/index.php\/2026\/05\/05\/vimeo-confirms-breach-via-third-party-vendor-impacts-119k-users\/"},"modified":"2026-05-09T12:30:12","modified_gmt":"2026-05-09T16:30:12","slug":"vimeo-confirms-breach-via-third-party-vendor-impacts-119k-users","status":"publish","type":"post","link":"https:\/\/news-you-need.com\/index.php\/2026\/05\/05\/vimeo-confirms-breach-via-third-party-vendor-impacts-119k-users\/","title":{"rendered":"Vimeo confirms breach via third-party vendor impacts 119K users"},"content":{"rendered":"<p><a href=\"https:\/\/securityaffairs.com\/191715\/data-breach\/vimeo-confirms-breach-via-third-party-vendor-impacts-119k-users.html\">Vimeo confirms breach via third-party vendor impacts 119K users<\/a><\/p>\n<p><a href=\"https:\/\/securityaffairs.com\/191715\/data-breach\/vimeo-confirms-breach-via-third-party-vendor-impacts-119k-users.html\">https:\/\/securityaffairs.com\/191715\/data-breach\/vimeo-confirms-breach-via-third-party-vendor-impacts-119k-users.html<\/a><\/p>\n<p>Publish Date: <a href=\"publish_date]\">2026-05-05 14:19:00<\/a><\/p>\n<p>Source Domain: <a href=\"securityaffairs.com\">securityaffairs.com<\/a><\/p>\n<p><h2>Vimeo confirms breach via third-party vendor impacts 119K users<\/h2>\n<\/p>\n<p>\t\t\t\t\t\t\t<span> Pierluigi Paganini<\/span><br \/>\n\t\t\t\t\t\t\t<span><img decoding=\"async\" src=\"https:\/\/securityaffairs.com\/wp-content\/themes\/security_affairs\/images\/clock-icon.svg\" alt=\"\"\/> May 05, 2026<\/span><\/p>\n<p>\t\t\t\t\t\t<img decoding=\"async\" class=\"img-fluid mb-4\" src=\"https:\/\/i0.wp.com\/securityaffairs.com\/wp-content\/uploads\/2026\/05\/image-13.png?fit=757%2C422&#038;ssl=1\" alt=\"\"\/><\/p>\n<h2 class=\"wp-block-heading\">Hackers stole data of 119,000 Vimeo users in April. The breach, linked to a third\u2011party vendor, exposed personal details.<\/h2>\n<p>Vimeo confirmed a data breach after the ShinyHunters gang stole personal information of 119,000 users in April 2026. According to Have I Been Pwned, the attackers accessed user data through a compromise at Anodot, a third\u2011party analytics vendor. <\/p>\n<p>\u201cIn April 2026, the ShinyHunters extortion group\u00a0listed Vimeo on their extortion portal as part of their \u201cpay or leak\u201d campaign. They subsequently published hundreds of gigabytes of data, predominantly consisting of video titles, technical data and metadata.\u201d reported Have I Been Pwned.\u201dThe data also included 119k unique email addresses, sometimes accompanied by names.\u00a0Vimeo attributed the exposure\u00a0to a breach of Anodot, a third-party analytics vendor, and advised the incident\u00a0does not\u00a0include \u201cVimeo video content, valid user login credentials, or payment card information\u201d.\u201d<\/p>\n<p>Vimeo confirmed that the security incident is linked to a breach at Anodot. An unauthorized actor accessed some Vimeo user and customer data, mainly technical information, video titles, metadata, and in some cases email addresses.<\/p>\n<p>\u201cVimeo is aware of a security incident affecting Anodot,\u00a0a third-party analytics vendor used by Vimeo and many other companies. The Google Threat Intelligence report associated with the unauthorized actor claiming responsibility for the Anodot incident can be found at\u00a0this link.\u201d reads the notice on the security incident published by the company.<\/p>\n<p>We have identified that, as a result of the Anodot breach,\u00a0an unauthorized actor accessed certain Vimeo user and customer data.\u00a0Our initial findings suggest that the databases accessed primarily contain technical data, video titles and metadata, and, in&#8230;<\/p>\n<p><a href=\"https:\/\/securityaffairs.com\/191715\/data-breach\/vimeo-confirms-breach-via-third-party-vendor-impacts-119k-users.html\">Source<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Vimeo confirms breach via third-party vendor impacts 119K users https:\/\/securityaffairs.com\/191715\/data-breach\/vimeo-confirms-breach-via-third-party-vendor-impacts-119k-users.html Publish Date: 2026-05-05 14:19:00 Source&#8230;<\/p>\n","protected":false},"author":1,"featured_media":242417,"comment_status":"closed","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"fifu_image_url":"https:\/\/securityaffairs.com\/wp-content\/uploads\/2026\/05\/image-13.png","fifu_image_alt":"","footnotes":""},"categories":[15],"tags":[30],"class_list":["post-242416","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cybersecurity","tag-breach"],"_links":{"self":[{"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/posts\/242416"}],"collection":[{"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/comments?post=242416"}],"version-history":[{"count":1,"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/posts\/242416\/revisions"}],"predecessor-version":[{"id":242418,"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/posts\/242416\/revisions\/242418"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/media\/242417"}],"wp:attachment":[{"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/media?parent=242416"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/categories?post=242416"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/tags?post=242416"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}