A massive data breach has hit Gyazo, a popular cloud-based screenshot and screen-recording tool used by 23 million users worldwide. Hackers exploited a server vulnerability to steal approximately 23.6 million user records, leaving many wondering what happened, who is affected, and how it will impact their online security.
The incident occurred on September 11, 2026, when attackers gained access to Gyazo’s database and obtained sensitive information such as names, email addresses, password hashes, and login session IDs. The company took the platform offline for maintenance on September 14, citing a preventive measure. “We sincerely apologize for any inconvenience caused,” reads a post on X. “Please wait a little longer until recovery.” In reality, the damage had already been done by the time Gyazo detected suspicious activity and fixed the vulnerability.
The exposed dataset varies per user but may include one or more of the following: names/nicknames, email addresses, password hashes, user and device IDs, login session IDs, X integration tokens, Google SSO email addresses, profile details, subscription information, billing status, usage statistics, and anonymous account records. Gyazo has confirmed that 490 million image metadata records were also exposed, including image IDs, upload IP addresses, User-Agent strings, EXIF location data, OCR-extracted text, image titles, source URLs, and hashed passphrases for private images.
What’s particularly concerning is the potential for hackers to access corresponding content using image IDs. Gyazo has temporarily disabled access to files whose records were exposed as a precautionary measure. The company also warns that some private images may have been viewed by the attackers, who obtained a list identifying these sensitive files. Thankfully, there’s no evidence of data being deleted in this incident.
Gyazo is now working with external experts and notifying affected users directly. If you’re one of the 23 million users impacted, take immediate action: change your password on Gyazo and other platforms where you use the same credentials. Stay vigilant for suspicious communications and monitor your accounts closely. This breach serves as a reminder that even popular services can be vulnerable to attacks.
As we navigate the ever-evolving cybersecurity landscape, it’s essential to stay informed about potential threats and take proactive measures to protect ourselves online. Remember: strong passwords, two-factor authentication, and regular security checks can go a long way in safeguarding your digital identity.
Source: Bleeping Computer — 2026-09-18