DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

“We’re not responsible:” TheDarkOverlord denies hacking Disney’s new Pirates movie

Posted on May 19, 2017 by Dissent

Since June of 2016, when they somewhat burst on the scene, there has been a lot written about the hacker/collective known as TheDarkOverlord (TDO). A lot of it appears to be  just plain inaccurate, but in some cases, the inaccurate reporting can be traced back to misleading communications or tweets by TDO. As a recent example of miscommunication creating an inaccurate understanding of a breach: when TDO recently dumped what appears to be three patient databases from Aesthetic Dentistry in NYC, OC Gastrocare, and Tampa Bay Surgery Center, some people may have erroneously assumed that TDO had attempted to extort all three entities and was dumping the data only because the entities had not paid the extortion demand. It would certainly be a  logical assumption based on their past history and their tweets.

In an encrypted chat last night, however, TDO informed this site that they had never contacted Tampa Bay at all.

And while TDO surprised me when they clarified that they had never attempted to extort Tampa Bay Surgery Center,  they surprised me even more when the conversation turned to hacks of Hollywood films and property.

Although this site had reported on their hack of Larson Studio and TDO’s attempt to extort Netflix over Orange is the New Black, I had not published anything about more recent media reports that a Disney film had been acquired by hackers and that the hackers were threatening to leak data in small amounts if their demands were not met.

The Disney story made the headlines on May 15, and by the next day, the movie had been identified as the upcoming Johnny Depp film, Pirates Of The Caribbean: Dead Men Tell No Tales.  But Disney’s CEO Bob Iger never named the hacker or hackers allegedly involved in the incident, nor was any extortion note or demand released that might enable some of us to recognize a hacker’s writing style.

A quick check of my notes confirmed my memory that TDO had never mentioned anything to me about hacking that particular movie. Could they have done it after Larson and not told me? Sure, but so far, I had no evidence that they were involved in this one.

Despite the absence of evidence, a number of articles by other reporters and news outlets seemed to hint that the Pirates hacker(s) might be TheDarkOverlord. After all, they were already known for hacking some films, they had already dumped Orange is the New Black, Season 5, and “Handsome,” and in one of their earlier statements, they had suggested that they might go after Disney next. It would be logical to suspect them of this one, too, right?

Sometimes 2 + 2 = 1.

According to TDO, he/they had nothing to do with the hack or extortion demand related to Pirates Of The Caribbean: Dead Men Tell No Tales. 

“… we weren’t responsible for the Disney “breach,” a spokesperson claimed, explaining that this may be another case of copycats trying to leverage their “brand:”

 It isn’t uncommon to have our “brand” used without authorisation but in this case it was also used to apparently dump fake data even though Disney’s CEO apparently confirmed that a theft had taken place.

So how odd is this denial? Most hackers might jump at the chance to establish or boost their reputation as hackers/extorters. But TDO is actively denying involvement in this one and claims that their brand is hurt by what they suspect are copycats who are leaking fake data.

Some readers may understandably suspect that TDO is lying to this site, and I certainly have no evidence to refute any such hypothesis. But here’s the thing – and this is where I may be a useful idiot or just too naive: I tend to believe their denial precisely because it works against them getting publicity as some kind of notorious hackers – publicity that they normally relish.

 

 

Category: Breach IncidentsBusiness SectorHackHealth DataU.S.

Post navigation

← Hacker Steals Millions of User Account Details from Education Platform Edmodo
Twitter discloses Vine users’ emails and phone numbers were exposed for a day →

1 thought on ““We’re not responsible:” TheDarkOverlord denies hacking Disney’s new Pirates movie”

  1. Barry Cook says:
    May 20, 2017 at 3:04 pm

    Let’s imagine a media outlet is fooled into running a fake story.

    Every man and his dog repeats the story without verification.

    It gradually becomes clear there was no hack.

    A person with prior knowledge might invest in the opportunity.

    No ransom required.

Comments are closed.

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • Nova Scotia Power hit by cyberattack, critical infrastructure targeted, no outages reported
  • Georgia hospital defeats data-tracking lawsuit
  • 60K BTC Wallets Tied to LockBit Ransomware Gang Leaked
  • UK: Legal Aid Agency hit by cyber security incident
  • Public notice for individuals affected by an information security breach in the Social Services, Health Care and Rescue Services Division of Helsinki
  • PowerSchool paid a hacker’s extortion demand, but now school district clients are being extorted anyway (3)
  • Defending Against UNC3944: Cybercrime Hardening Guidance from the Frontlines
  • Call for Public Input: Essential Cybersecurity Protections for K-12 Schools (2025-26 SY)
  • Cyberattack puts healthcare on hold for hundreds in St. Louis metro
  • Europol: DDoS-for-hire empire brought down: Poland arrests 4 administrators, US seizes 9 domains

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • Apple Siri Eavesdropping Payout Deadline Confirmed—How To Make A Claim
  • Privacy matters to Canadians – Privacy Commissioner of Canada marks Privacy Awareness Week with release of latest survey results
  • Missouri Clinic Must Give State AG Minor Trans Care Information
  • Georgia hospital defeats data-tracking lawsuit
  • No Postal Service Data Sharing to Deport Immigrants
  • DOGE aims to pool federal data, putting personal information at risk
  • Privacy concerns swirl around HHS plan to build Medicare, Medicaid database on autism

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: +1 516-776-7756

Contact Me

Email: info[at]databreaches.net

Mastodon: Infosec.Exchange/@PogoWasRight

Signal: +1 516-776-7756

DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.