Menu
Browse

Cyber Incident Victim: Guntrader

Date:

Jul 2021

Location:

United Kingdom

Summary

A UK-based firearms sales platform suffered a security breach resulting in the theft and publication of approximately 100,000 customer records containing names and addresses on the dark web. While the compromised data did not explicitly include firearm ownership details or storage locations, affected individuals—many presumed to be gun owners—expressed safety concerns over potential targeting by criminals due to the tightly regulated nature of firearms in the country. Law enforcement agencies including the National Crime Agency and regional cybercrime units are investigating the incident, with shooting organizations advising heightened vigilance regarding home security. The company emphasized this was its first successful breach in two decades and indicated no evidence of extortion attempts or political motives behind the attack.

CIA Posture Motives Tactics, Techniques & Procedures
Available to members 2 motives 1 technique
Threat Actors Type Location
0 actors Available to members Available to members

Description

In July 2021, Guntrader.uk, a UK-based firearms sales platform, suffered a security breach resulting in the theft of approximately 100,000 customer records. The company discovered the incident on Monday, July 19, 2021, and promptly notified the UK Information Commissioner's Office. Attackers exfiltrated names and addresses of customers but did not access information detailing gun ownership or firearm storage locations. The stolen data was subsequently published on a dark web forum, exposing individuals potentially linked to firearm possession. The South West Regional Cyber Crime Unit (SWRCCU) led the criminal investigation, with support from the National Crime Agency, which confirmed collaboration with Guntrader.uk to assess the incident's impact. Company representative Simon Baseley stated this marked the first successful breach of their systems in 20 years of operation, noting no evidence of financial extortion attempts or politically motivated objectives behind the attack.

Cyber Incident Image

The data exposure raised immediate security concerns among affected gun owners, with one individual anonymously telling the BBC the breach compromised firearm security protocols and increased risks of criminal targeting against their family. UK firearms legislation mandates strict storage requirements, intensifying fears that leaked addresses could facilitate theft attempts. The British Association for Shooting and Conservation (BASC) issued public advisories urging members to reinforce home security, verify firearm storage compliance, and report suspicious activities to police. Law enforcement agencies reiterated existing security guidance for firearm certificate holders, emphasizing that most UK police forces conduct pre-licensing security inspections. Guntrader.uk coordinated with investigative agencies to mitigate consequences but confirmed no direct communication from threat actors regarding ransom demands or exploitation of the stolen data.

Sources
Sources available to members
1 source