Gyazo, an image-sharing service operated by Kyoto-based Helpfeel, discloses that a security breach exposed about 23.62 million user records and around 490 million image metadata records. The company says the compromised data includes user information such as email addresses and password hashes.
The outlets report that the exposed image-related data mainly concerns image metadata for images from January 2019 or earlier. This metadata is said to include the identifiers used to construct Gyazo image links. Both sources describe the scale of exposure, including records tied to image viewing or sharing.
The reporting also notes that the incident involves potential exposure of personally identifying information (PII) and image metadata, with TechRadar adding that the attackers may have accessed PII and metadata and that personal images may also be at risk, according to its summary of the incident. The Hacker News focuses more on the company’s notice and the specific record counts and categories disclosed by Helpfeel, without additional claims about personal-image access.