A hacker under the alias of Satanic has claimed to have breached SendGrid, Twilio’s cloud-based email delivery platform.
The alleged hack includes the leaking and selling of data on 848,000 customers.
Twilio has denied the claims, shared on Hackread, and issued the following statement:
There is no evidence to suggest that Twilio or Twilio SendGrid was breached.
"To the best of our knowledge, after reviewing a sampling of this data, we believe that none of this data originated from SendGrid," concluded the company spokesperson.
Despite the denial, a hacker going by the name ‘Satanic’ posted a supposed sample on Breach Forums - a popular cybercrime platform - offering to sell the allegedly scalped data for $2,000.
Alleged Data Leak Includes Personal Identifiable Information (PII)
A sample of the data allegedly stolen from Twilio includes the following information:
- Customer emails, phone numbers, physical addresses, cities, states, countries, social media profiles, and LinkedIn IDs.
- Company-level data such as domain names, revenue, employee counts, SEO performance, hosting providers, and rankings from services like Cloudflare and Tranco.
- Financials like revenue, operating income, net income, and other business metrics
- Employee data and some public-facing executive details
- Information on company tech stacks, including CMS platforms, payment solutions, and CRM tools
The hacker's sample dataset also pinpoints companies such as Bank of America, Bazaarvoice, and the BBC.
Yet, this isn’t Satanic’s first association with a significant - albeit alleged - data breach.
In September 2024, the hacker attacked Tracelo incident, leaking the personal information of 1.4 million users from a smartphone geolocation tracking service.
Besides high-profile breaches, Satanic is recognized within underground communities for disseminating infostealer logs through Telegram.
Meanwhile, Twilio has had recent experience dealing with data exposures.
In July 2024, hacker group ShinyHunters leaked 33 million phone numbers of Twilio Authy users, a two-factor authentication app.
Shortly afterward, in September 2024, Twilio hit the headlines again.
This time, a breach exposed 12,000 call recordings from a third-party tool used by a customer.
Importantly, neither incident conclusively demonstrated a direct breach of Twilio’s infrastructure.
AI Excaserbates Security Risks
Cybersecurity remains one of the greatest challenges to adopting AI and cloud-based solutions.




