Suno, Paidwork Data Breaches Affect Tens of Millions of Accounts

Tens of millions of accounts compromised in devastating data breaches at Suno and Paidwork

A massive cyberattack has struck two major companies, leaving tens of millions of user records vulnerable. The breach, which occurred in November 2025, targeted AI music generator Suno and gig-work platform Paidwork. Hackers stole source code and sensitive user information from both platforms, compromising the security of millions of users.

The affected platforms offer unique services: Suno generates music using AI algorithms, while Paidwork connects workers with small jobs to complete for pay. Both companies have been targeted by hackers who used various tactics to gain access to their systems. According to Have I Been Pwned (HIBP), a data breach notification service, the stolen source code from Suno revealed that the company had been scraping music and podcasts from popular platforms like Deezer, YouTube, and Genius.

The compromised user data at Suno included 55.3 million unique email addresses, phone numbers, and tens of thousands of Stripe payment records. This information includes names, physical addresses, purchase amounts, and partial payment card details (card type, expiration date, and last four digits of the card number). In contrast, Paidwork’s leaked data contains 23.3 million unique email addresses, as well as names, password hashes, physical addresses, dates of birth, phone numbers, bank account numbers, financial transactions, and user profile information.

The breach at Suno was first discovered earlier this month by 404 Media, which reported that hackers had obtained source code and user data. Paidwork’s alleged breach occurred in March 2026, with a threat actor claiming to have stolen an 11 GB database containing user information. HIBP analyzed the leaked data from both breaches, identifying unique email addresses and other sensitive details.

In response to the breaches, Paidwork has provided a statement saying they are aware of the report but have no confirmed evidence that their systems or user accounts were compromised. They have escalated the matter to their security team for investigation. Suno has not publicly commented on the breach.

The severity of these breaches underscores the importance of robust cybersecurity measures for companies and users alike. As more personal data is shared online, hackers are increasingly targeting platforms with lax security protocols. These attacks serve as a reminder that even seemingly secure services can be vulnerable to cyberattacks.

Practically speaking, users affected by these breaches should take immediate action: check their email accounts and credit card statements for suspicious activity, and consider changing passwords and payment details. Companies must also prioritize cybersecurity measures, investing in robust security protocols and regularly monitoring their systems for potential threats. By doing so, they can reduce the risk of similar breaches occurring in the future.


Source: SecurityWeek — 2026-07-22