Lidl Online Shop Data Leak: Customer Data Stolen from Service Provider (heise.de)
0xBASE INTEL BRIEF
- Attackers gained access to a customer data file at a Lidl service provider.
- Data stolen: salutation, first/last name, phone, email, DOB, customer number; no postal addresses, passwords, or payment info.
- Lidl notified data protection authority; service provider filed criminal complaint; no evidence of misuse.
"Unknown attackers accessed a file containing customer data at a service provider of Lidl. Stolen data includes salutation, first and last name, phone number, email address, date of birth, and customer number. No postal addresses, passwords, or payment information were compromised. Lidl notified the data protection authority; the service provider filed a criminal complaint. No evidence of misuse has been found, but Lidl warns against phishing."
#data breach
#third-party risk
#customer data
no comments yet.