Paramount Film Leaks Online Amid Report on Hollywood Cybersecurity Vulnerabilities
A full version of the $80 million animated film 'Legend of Aang: The Last Airbender' leaked online last week, six months before its scheduled release on Paramount+. A report from cybersecurity firm Red Sift indicates that many U.S. entertainment studios remain vulnerable to cyber threats, similar to issues exposed in the 2014 Sony hack.
Substrate placeholder — needs reviewA full version of the $80 million animated film "Legend of Aang: The Last Airbender" leaked online last week, six months ahead of its planned release on Paramount+. The leak was posted by a person in Singapore, who reportedly received it from the hacker collective Pegglecrew.
Paramount declined to comment, but a source familiar with the preliminary investigation stated that the leak did not result from a vulnerability in the company's systems. Pegglecrew has been less active in recent years but previously accessed the software hosting website Fosshub and musician Ringo Starr's Twitter account in 2016.
Two years ago, an unfinished copy of Paramount's "Saving Bikini Bottom: The Sandy Cheeks Movie" also leaked online about two weeks before its release.
A report by U.K. cybersecurity firm Red Sift analyzed California's 100 largest employers, including major film and TV studios, and found persistent vulnerabilities in the U.S. entertainment industry. The report noted that 71% of major studios have no enforced protection against email impersonation, with Universal being the only studio that actively blocks spoofed or malicious emails.
None of the major Hollywood studios use BIMI brand verification for emails, which includes an official logo to enhance trustworthiness and reduce impersonation risks. Brian Westnedge, director of alliances and partnerships at Red Sift, stated that the "Legend of Aang" incident highlights the risks for studios not addressing current cybersecurity threats.
He added that such events cause financial harm to studios and workers involved in the productions.
The report references the 2014 Sony Pictures hack by the group Guardians of Peace, which exposed executive emails and released finished movies. Since then, other incidents include the 2016 theft of a full season of Netflix's "Orange Is the New Black" by TheDarkOverlord, who released it after a ransom demand was ignored.
In 2017, a hacker known as Mr. Smith, later identified by federal authorities as working for the Iranian regime, stole content from HBO, including a script summary for an unaired "Game of Thrones" episode and episodes of other shows, demanding millions in ransom.
More recently, in 2024, a hacker named NullBudge accessed Disney's systems via a Slack attack, leading to a guilty plea by a California man the following year. The Red Sift report indicates that more than two-thirds of major studios could be impersonated via email without hacking, due to lacking protections, especially amid geopolitical conflicts and AI advancements.
Key Facts
Story Timeline
5 events- Last week
A full version of the $80 million film 'Legend of Aang: The Last Airbender' leaked online six months before its release.
1 sourceNew York Post - Two years ago
An unfinished copy of Paramount's 'Saving Bikini Bottom: The Sandy Cheeks Movie' leaked online two weeks before release.
1 sourceNew York Post - 2024
Hacker NullBudge accessed Disney's systems via a Slack attack, leading to a guilty plea by a California man the next year.
1 sourceNew York Post - 2017
Hacker Mr. Smith stole HBO content and demanded ransom, later identified as working for the Iranian regime.
1 sourceNew York Post - 2014
Guardians of Peace hacked Sony Pictures, exposing emails and releasing movies.
1 sourceNew York Post
Potential Impact
- 01
Studios may increase investments in email security measures following the Red Sift report.
- 02
Financial losses for Paramount could affect future production budgets for animated films.
- 03
Increased awareness could lead to fewer premature leaks of upcoming content.
- 04
More studios might adopt BIMI verification to reduce impersonation risks.
- 05
Entertainment workers may face job-related financial harm from similar breaches.
Transparency Panel
Related Stories
EuronewsWorld Urban Forum 2026 Draws 57,000 Participants from 176 Countries
The 13th World Urban Forum concluded with discussions on housing, climate resilience and urban governance. Organisers reported that the sessions informed future strategic priorities.
theverge.comTrump Mobile website still lists T1 phone as American-made
The product page for the T1 phone continues to describe the device as American-made. The Verge reported that the site may conflict with FTC advertising rules. The phone was announced in June 2025.
France 24EU Discusses Readiness for Artificial Intelligence Changes
A France 24 program examined whether European Union policies can address the effects of artificial intelligence. The discussion covered potential impacts across daily life and economic sectors.