19.4 C
New York
Sunday, April 20, 2025

Samsung hit by new knowledge breach impacting UK retailer clients


Samsung Electronics is notifying a few of its clients of a knowledge breach that uncovered their private data to an unauthorized particular person.

The corporate says that the cyberattack impacted solely clients who made purchases from the Samsung UK on-line retailer between July 1, 2019, and June 30, 2020.

Hacker exploits bug in third-party app

Samsung found the info breach two days in the past, on November 13, and decided that it was the results of a hacker exploiting a vulnerability in a third-party software the corporate used.

No particulars have been offered concerning the safety concern leveraged within the assault or the weak software that enabled the attacker to entry Samsung buyer’s private data.

The notification to clients says that uncovered knowledge might embrace names, cellphone numbers, postal and electronic mail addresses. The corporate underlines that credentials or monetary data stays unaffected by the incident.

A Samsung spokesperson advised BleepingComputer that the corporate was just lately alerted of a cybersecurity incident that’s restricted to the UK area and doesn’t have an effect on knowledge belonging to clients within the U.S., workers, or retailers.

“We have been just lately alerted to a cybersecurity incident, which resulted in sure contact data of some Samsung UK e-store clients being unlawfully obtained. No monetary knowledge, resembling financial institution or bank card particulars, or buyer passwords, have been impacted. The incident is proscribed to the UK and doesn’t have an effect on U.S. clients, workers or retailer knowledge” – Samsung

The corporate has taken all mandatory steps to handle the safety concern, the consultant advised BleepingComputer, including that the incident has additionally been reported to the UK’s Data Commissioner’s Workplace.

That is the third knowledge breach Samsung has suffered in two years. The earlier one occurred in late July, 2023 – found on August 4, when hackers accessed and stole Samsung clients’ names, contacts and demographic data, dates of start, and product registration knowledge.

In March 2023, the knowledge extortion group Lapsus$ breached Samsung’s community and stole confidential data, together with supply code for Galaxy smartphones.

Samsung confirmed that “sure inside knowledge” had fallen into the palms of an unauthorized occasion after Lapsus$ leaked about 190GB of archived information together with an outline of the contents.

Related Articles

Latest Articles