Nintendo Data Breach Statement Counters Hacker Claims

Black and red nintendo switch (Photo by Erik Mclean on Unsplash )

Black and red nintendo switch (Photo by Erik Mclean on Unsplash)

Summary
  • Nintendo confirmed an issue involving TinyPulse and internal survey data.
  • Nintendo said its systems were not compromised and no customer data accessed.
  • A hacker named SHADOWBYT3$ claimed about 859MB was taken, not verified.
  • Reports list alleged items including bank statements and W-9 forms.

nintendo data breach statement from Nintendo of America confirmed an issue tied to TinyPulse, a third party used for internal employee surveys, and said Nintendo systems were not compromised and no personal customer or financial data was accessed.

The company said the material involved is limited to internal survey content from a small subset of employees and that most of the information dates back several years, and it added it is working with the service provider to address the issue.

A separate set of reports attributed to a hacker using the handle SHADOWBYT3$ said roughly 859MB of data was obtained via TINYpulse, though that claim has not been independently verified and appears in initial coverage.

Allegations, Content Claims And Related Incidents

The claim lists a range of employee information that was said to be affected, including employee names, email addresses, surveys, analytics reports, bank statement PDFs, W-9 forms, workplace feedback and employee progress records, as reported in the initial coverage.

TechNadu and other reports noted that TINYpulse is associated with employee engagement and workplace feedback functions, which aligns with the survey and feedback records described in the claimed dataset, while Nintendo maintains the exposed material is internal survey content only.

The reporting also referenced past industry incidents, noting Nintendo has faced prior leaks including the 2020 "Gigaleak" and a 2024 "Teraleak" that followed a Game Freak hack, and that Game Freak confirmed unauthorized access affecting personal data and development material.

Nintendo additionally indicated employees outside of North America were apparently not involved in the affected subset, and the company reiterated it takes feedback seriously and will work with the third party to resolve the matter as coverage continues.