{"id":64915,"date":"2025-08-07T10:51:07","date_gmt":"2025-08-07T10:51:07","guid":{"rendered":"https:\/\/www.newsbeep.com\/us\/64915\/"},"modified":"2025-08-07T10:51:07","modified_gmt":"2025-08-07T10:51:07","slug":"pandora-confirms-data-breach-following-suspected-shinyhunters-cyberattack","status":"publish","type":"post","link":"https:\/\/www.newsbeep.com\/us\/64915\/","title":{"rendered":"Pandora confirms data breach following suspected ShinyHunters cyberattack"},"content":{"rendered":"<p>        Customer information accessed through a third-party platform<\/p>\n<p>            <img decoding=\"async\" loading=\"lazy\" alt=\"\" src=\".\/media_1de32767cd64ef49994cd82bdca498227fc7319bc.jpg?width=750&amp;format=jpg&amp;optimize=medium\" width=\"3359\" height=\"2240\"\/><br \/>\n          Luxury jewellery brand Pandora has confirmed it was the victim of a cyberattack which exposed customer information, the latest high-profile incident in a growing wave of retail sector breaches.\n        <\/p>\n<p>In a letter sent to affected customers, the company disclosed that \u201csome customer information was accessed through a third-party platform that we use.\u201d The compromised data was described as \u201conly very common types\u201d specifically, names and email addresses. More sensitive details such as passwords or payment information were not stolen, according to Pandora.<\/p>\n<p>\u201cWe want to reassure you that the attack has been stopped, and as a result we have further strengthened our security measures,\u201d the company said, adding that it had not found evidence of the data being misused so far. Customers were nonetheless advised to be cautious of suspicious emails and avoid clicking on links or attachments from unknown sources.<\/p>\n<p>        ShinyHunters suspected<\/p>\n<p>While Pandora has not publicly attributed the attack or disclosed the number of affected customers, reports from <a href=\"https:\/\/www.bleepingcomputer.com\/news\/security\/shinyhunters-behind-salesforce-data-theft-attacks-at-qantas-allianz-life-and-lvmh\/\" rel=\"nofollow noopener\" target=\"_blank\">BleepingComputer<\/a>suggest that the cybercriminal group ShinyHunters may be behind the breach. The group is believed to have infiltrated Pandora\u2019s Salesforce environment using phishing and social engineering tactics, techniques it has allegedly been refining since January this year.<\/p>\n<p>ShinyHunters has reportedly threatened a mass leak or sale of company data if ransom demands are not met.<\/p>\n<p>Salesforce, however, denies that its platform was compromised. In a statement, the company said: \u201cSalesforce has not been compromised and the issues described are not due to any known vulnerability in our platform.\u201d<\/p>\n<p>Earlier this week <a href=\"https:\/\/www.computing.co.uk\/news\/2025\/security\/chanel-confirms-us-data-breach-linked-to-salesforce\" rel=\"nofollow noopener\" target=\"_blank\">French luxury brand Chanel<\/a> confirmed a data breach suspected to be the result of a compromise of its SalesForce CRM by the ShinyHunters group.<\/p>\n<p>        Increasingly common retail attacks<\/p>\n<p>Security experts have warned that incidents like Pandora\u2019s are becoming alarmingly common in retail and that attackers are increasingly focused on data theft over disruption.<\/p>\n<p>Darren Williams, founder and CEO of BlackFog, commented:\u201cPandora now joins the growing list of high\u2011profile victims, including Marks &amp; Spencer, Co\u2011op and Harrods, highlighting how attackers are relentlessly targeting customer data across the retail sector.<\/p>\n<p>\u201cThis incident reflects the clear shift in ransomware tactics toward stealthy data exfiltration. Rather than immediate disruption, attackers are quietly harvesting sensitive information to power extortion schemes, identity fraud and dark web trade, damage that often continues long after the initial compromise. With Q2 2025 seeing retail ransomware incidents surge 58% from the previous quarter, the sector has never faced greater pressure.\u201d<\/p>\n<p>Jon Tamplin, head of security at ThreatAware, echoed the concerns around seemingly \u201clow-level\u201d data being sufficient for further attacks:<\/p>\n<p>\u201cPandora\u2019s statement might have said that \u2018only very common types of data\u2019 have been stolen; however, names and email addresses are exactly what attackers need to carry out phishing attacks,\u201d he said.<\/p>\n","protected":false},"excerpt":{"rendered":"Customer information accessed through a third-party platform Luxury jewellery brand Pandora has confirmed it was the victim of&hellip;\n","protected":false},"author":2,"featured_media":64916,"comment_status":"","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[46],"tags":[191,5401,4002,47877,11193,47876,74,47700],"class_list":["post-64915","post","type-post","status-publish","format-standard","has-post-thumbnail","category-computing","tag-computing","tag-data-breach","tag-hacking","tag-pandora","tag-ransomware","tag-shinyhunters","tag-technology","tag-threat-intelligence"],"_links":{"self":[{"href":"https:\/\/www.newsbeep.com\/us\/wp-json\/wp\/v2\/posts\/64915","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.newsbeep.com\/us\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.newsbeep.com\/us\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/us\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/us\/wp-json\/wp\/v2\/comments?post=64915"}],"version-history":[{"count":0,"href":"https:\/\/www.newsbeep.com\/us\/wp-json\/wp\/v2\/posts\/64915\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/us\/wp-json\/wp\/v2\/media\/64916"}],"wp:attachment":[{"href":"https:\/\/www.newsbeep.com\/us\/wp-json\/wp\/v2\/media?parent=64915"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.newsbeep.com\/us\/wp-json\/wp\/v2\/categories?post=64915"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.newsbeep.com\/us\/wp-json\/wp\/v2\/tags?post=64915"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}