A data seller has allegedly claimed to have stolen 1.7 million records of McDonald’s employees from its Azure database. An analysis of an 8,000-row sample from the supposed leak confirms its authenticity, demonstrating details consistent with legitimate McDonald's data. The sample showcases various internal records, including employee accounts and organizational details, but lacks date fields necessary to determine when the data was extracted.
The seller, known as TheHatman, is associated with multiple postings claiming similar leaks from other companies, suggesting a potential pattern of credential harvesting through malware rather than a sophisticated compromise. Concerns are raised about social engineering risks for individuals named in the data, as the leaked information could facilitate fraudulent activities.