Urgent.News

What's breaking now, across thousands of outlets.

Tech

Hungry Lion customer creds online for months

The Hungry Lion customer credentials were exposed for nine months through a ransomware attack, say cyber experts.

Hungry Lion customer creds online for months

Hungry Lion customer credentials were exposed online for approximately nine months, according to security researchers. The fast-food chain's online customer portals were identified as the source of the breach, which occurred due to a ransomware attack by MedusaLocker. GalaxyWarden, a cyber security researcher, reported that MedusaLocker claimed to have stolen data from 111 locations across South Africa, Botswana, Namibia, Zambia, Zimbabwe, Lesotho, Mauritius.

SOCRadar confirmed that 23 records associated with Hungry Lion's .co.za domain were compromised, including 13 customer accounts and 10 numerical IDs. All records were linked to consumer-facing web self-service portals, indicating data exposure between October 2025 and July 2026. SOCRadar suggested the breach could be due to consumers' devices rather than the company's main network.

The company is now considering notifying customers under the Protection of Personal Information Act and reviewing its web portal and online ordering infrastructure. The incident highlights the importance of secure behavior and rapid response to prevent data breaches.

Written by urgent.news from ITWeb's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.

Read the original at itweb.co.za →

More in Tech

More from Tuesday 1 September →