{
  "id": 4845491,
  "title": "Hungry Lion customer creds online for months",
  "url": "https://urgent.news/2026/09/01/hungry-lion-customer-creds-online-for-months",
  "topic": "tech",
  "section": "Tech",
  "published": "2026-09-01T10:14:46.000Z",
  "source": {
    "name": "ITWeb",
    "slug": "itweb",
    "url": "https://www.itweb.co.za/article/hungry-lion-customer-creds-online-for-months/6GxRKqYQEDZqb3Wj"
  },
  "original_language": "en",
  "account": "Hungry Lion customer credentials were exposed online for approximately nine months, according to security researchers. The fast-food chain's online customer portals were identified as the source of the breach, which occurred due to a ransomware attack by MedusaLocker. GalaxyWarden, a cyber security researcher, reported that MedusaLocker claimed to have stolen data from 111 locations across South Africa, Botswana, Namibia, Zambia, Zimbabwe, Lesotho, Mauritius. SOCRadar confirmed that 23 records associated with Hungry Lion's .co.za domain were compromised, including 13 customer accounts and 10 numerical IDs. All records were linked to consumer-facing web self-service portals, indicating data exposure between October 2025 and July 2026. SOCRadar suggested the breach could be due to consumers' devices rather than the company's main network. The company is now considering notifying customers under the Protection of Personal Information Act and reviewing its web portal and online ordering infrastructure. The incident highlights the importance of secure behavior and rapid response to prevent data breaches.",
  "summary": "The Hungry Lion customer credentials were exposed for nine months through a ransomware attack, say cyber experts.",
  "key_points": [],
  "editors_take": null,
  "illustration": null,
  "coverage": {
    "outlets": 1,
    "also_reported_by": []
  },
  "ai_generated": true,
  "disclaimer": "Summaries, key points and the editor’s take are written by software from other outlets’ reporting and may contain errors — always check the linked original."
}