article thumbnail

Canadian retail chain Giant Tiger data breach may have impacted millions of customers

Security Affairs

A threat actor claimed the hack of the Canadian retail chain Giant Tiger and leaked 2.8 A threat actor, who goes online with the moniker ShopifyGUY, claimed responsibility for hacking the Canadian retail chain Giant Tiger and leaked 2.8 Every member of the forum can download the archive for 8 credits.

Retail 353
article thumbnail

Online Retailer LightInTheBox exposes unsecured DB containing 1.3TB of web server logs

Security Affairs

LightInTheBox is a Chinese online retailer trading on the New York Stock Exchange, most of its customers are in North America and Europe. The data leak was discovered by VPNmentor in late November, data in the archive was “unsecured and unencrypted”, and accessible from anyone via a web browser. TB of data, totaling over 1.5

Retail 230
Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

RansomEXX ransomware leaks files stolen from Italian luxury brand Zegna

Security Affairs

As of 2018, Ermenegildo Zegna operated 480 retail stores (267 of which company-owned) across the world. The RansomEXX ransomware group claims to have stolen 20.74GB of data from the company and leaked 43 archives (42 archives of 500MB in size and 1 archive containing 239.54MB of documents).

article thumbnail

Decathlon Spain data leak exposed Spanish employees’ data & more

Security Affairs

Experts from vpnMentor have uncovered a leaking, active database containing over 123 million records belonging to the sporting goods retailer Decathlon Spain (and possibly Decathlon UK as well). The unsecure archive is greater than 9GB in size and was published on an ElasticSearch server. ” reads the post published by vpnMentor.

Archiving 337
article thumbnail

440M records found online in unprotected database belonging to Estée Lauder

Security Affairs

Estée L auder is an American multinational manufacturer and marketer of p restige skincare, makeup, fragrance and hair care p roducts, it owns multiple brands, distributed internationally through both digital commerce and retail channels. The archive included audit logs containing a large number of email addresses in each document. .

Archiving 356
article thumbnail

TA505 is expanding its operations

Security Affairs

The threat group is also known for its recent attack campaign against Bank and Retail business sectors, but the latest evidence indicates a potential expansion of its criminal operation to other industries too. exe” sample actually is a Self Extracting Archive (SFX/SFA) containing four files designed to be extracted in the %TEMP% folder.

IT 254
article thumbnail

Croatia government agencies targeted with news SilentTrinity malware

Security Affairs

The phishing messages posed as delivery notifications from the Croatian postal or other retail services, they included a Microsoft Excel saved in the old.xls format and compiled the previous day. The archive contents are extracted, without being saved to disk. Dependencies are registered for properly handling Python scripts.