Tag: customer data exposure
22 articles

LACMA Breach Exposes Sensitive Data of Customers, Employees
A data breach at LACMA exposed sensitive information of customers and employees, with suspicious activity first detected on July 11, 2025, and a confirmed network compromise a month later. The museum's investigation, which concluded in 2026, revealed a lengthy vulnerability that put personal data at risk.

Supply Chain Hack Exposes Pokémon Center Customer Data
A recent supply chain hack exposed sensitive customer data at the Pokémon Center, but fortunately, the breach occurred through a third-party logistics partner, CEVA, and not directly through the retailer's own systems. The incident, triggered by CEVA's notification on July 30, compromised customer order details for Pokémon Center's UK and German shipments.

Pokémon Center Breach Exposes Customer Data
A recent cyberattack on CEVA Logistics, a major shipping company, has compromised customer data at the Pokémon Center, forcing the cancellation of some orders due to an unforeseen fulfilment issue. The breach, which occurred between July 29 and August 1, has disrupted operations for multiple retailers in Europe.

SafePal Breach Exposes 40,000 Customers to Phishing Risk
Don't worry, SafePal has confirmed that sensitive info like your seed phrase, private keys, and bank account details were not compromised in the breach that exposed the order info of 39,798 customers. The exposed data includes names, email and shipping addresses, phone numbers, and purchase details of customers who placed orders between March 2025 and April 2026.

ShinyHunters Breach Exposes 1.6M RingCentral Accounts
A massive data breach at RingCentral has exposed the sensitive information of 1.6 million customers, including names, addresses, phone numbers, and email addresses, which have been posted online by the hacker group ShinyHunters. This breach was discovered on July 28, and although RingCentral took swift action to stop the unauthorized activity, the damage has already been done.

ShinyHunters Breach Exposes 1.6 Million RingCentral Accounts
RingCentral has confirmed that a breach, known as ShinyHunters, compromised 1.6 million of its accounts, but has since taken swift action to prevent further unauthorized activity. The company is now directly contacting affected customers and has assured that its core platform remains secure and operational.

Trezor Breach Exposes 13,000 Customers' Personal Data
A security breach at Trezor's logistics partner has compromised the personal data of over 13,000 customers, including names, email addresses, phone numbers, and shipping addresses, with the exposure window potentially stretching back 90 days. Trezor has confirmed the breach, which affects customers in several countries who ordered products between May and August.

Trezor Breach Exposes 14,000 Customer Records
Trezor revealed that its shipping partner, ShipMonk, suffered a security breach, exposing a whopping 14,000 customer records, and fortunately confirmed that its own systems and devices remain secure. The breach, which occurred between May 10 and August 8, 2026, was discovered on August 10, 2026.

ShinyHunters Breach Exposes Brinks Home Data
Brinks Home recently disclosed a security breach, with an extortion group claiming to have exposed millions of customer records, prompting the company to activate its incident response procedure and work with leading forensics experts to contain the damage. The breach, identified on July 20, thankfully didn't impact alarm monitoring and system functionality.

Origin Energy Data Breach Exposes Client Information
Origin Energy has confirmed a data breach, exposing customer records and sparking an immediate investigation into the incident. The breach affects some of its 4.8 million customers, and the company is taking swift action to notify and protect those impacted.

Chick-Fil-A Breach Uncovers Credential Stuffing Vulnerability
Chick-fil-A recently fell victim to a credential stuffing attack, exposing sensitive customer info - including names, email addresses, and credit card details - and raising concerns about the vulnerability of online accounts. The breach highlights the importance of securing digital credentials to protect personal data.

Miinto Breach Exposes Customer Order Data to Unauthorized Access
Miinto recently suffered a data breach, allowing unauthorized access to its internal order management system, potentially exposing your order data. The company has notified affected customers and taken steps to address the issue, reporting it to the police and relevant data protection authorities.

SoFi Hong Kong Breach Exposes Customer Data at Third-Party Vendor
SoFi Hong Kong recently discovered a data breach at a third-party vendor that exposed customer information, with unauthorized access detected on April 30, 2026. The company's investigation is ongoing, but it confirmed the breach originated from a vendor, not its internal systems.

Multiple Breaches Expose Sensitive Data Across Industries
Sensitive data has been compromised across various industries in a series of alarming breaches, including a clever social engineering scam that exposed info of 6 million Carnival Corporation customers and two incidents involving learning management company Instructure's Canvas platform. These breaches highlight the growing threat of cyber attacks and the importance of robust data protection measures.

California AG Sues 23andMe Over Data Breach Handling
California's top law enforcement official is taking on 23andMe for its botched handling of a massive data breach that exposed the sensitive genetic and personal info of nearly 7 million customers - including over 855,000 Californians. The lawsuit claims the company's lax security and software quality allowed hackers to get away with highly sensitive data.

ShinyHunters Breaches Charter, Exposes 4.9M Customer Records
A massive data breach at Charter has exposed a whopping 4.9 million customer records, with hackers from the notorious ShinyHunters group proudly adding the telco to their "trophy shelf" and making sensitive info like names, addresses, and phone numbers publicly available. Charter has downplayed the incident, claiming no sensitive data was taken, but the reality is that millions of customers are now at risk.

Charter Communications Breach Exposes 4.9 Million Accounts
A shocking data breach at Charter Communications has left 4.9 million customer accounts vulnerable, with hackers gaining access to sensitive information including names, email addresses, phone numbers, and physical addresses. The breach occurred after a clever voice phishing attack on April 1 allowed cybercriminals to tap into the company's Salesforce database.

Carnival Cruise Data Breach Exposes 6 Million Customers
A recent data breach at Carnival Cruise, affecting 6 million customers, highlights the vulnerability of traditional security controls to social engineering tactics, where a single compromised employee device can lead to devastating consequences. This incident serves as a stark reminder of the human factor in cybersecurity, where threat actors exploit trust and impersonation to gain access to sensitive information.

US Bank Self-Reports Data Leak to Unauthorized AI App
A US bank has taken swift action, self-reporting a data leak that exposed sensitive customer information to an unauthorized AI app, sparking concerns over the volume and sensitivity of the compromised data. The bank's proactive disclosure to regulators and customers highlights its commitment to transparency in the face of a data-handling lapse.

ShinyHunters Breach Exposes 200,000 Zara Customers
A massive data breach at fashion giant Zara has exposed the sensitive information of over 197,000 customers, including email addresses, order details, and support ticket info, after a hacking group called ShinyHunters gained unauthorized access to the company's systems. The breach was quickly contained, with parent company Inditex alerting authorities and assuring customers that no names, passwords, or payment details were compromised.

McGraw Hill Breach Exposed by Salesforce Setup Flaw
A configuration error in Salesforce, a widely used customer relationship management platform, led to a data breach at McGraw Hill, exposing customer data and raising questions about vendor services and data stewardship. The incident highlights the importance of proper setup and management of third-party services to protect sensitive information.

Basic-Fit Discloses Data Breach Exposing Member Information
Basic-Fit, Europe's largest gym chain, has confirmed a data breach that exposed sensitive information, including bank details, for around one million customers, raising urgent concerns about data security and accountability. The breach, which resulted from a cyberattack, compromised names, addresses, dates of birth, and financial information, but thankfully did not involve password theft.