Skip to content

A Threat Actor is Allegedly Selling the Data of Multiple German Shopping Databases

💡This post is part of Free Post Friday! If you're not a paid subscriber to the platform, these are some of the details you would see if you were a paid subscriber!

💡 Subscribe to DarkWebInformer.com for Unmatched Cyber Threat Intelligence 💡

Why Subscribe? Let me do the work and save you time.

Stay ahead of cyber threats and safeguard your digital assets while enhancing your cybersecurity awareness with these exclusive subscriber-only features:

  • 📜
    Detailed Threat Posts: Stay updated on breaches, ransomware, DDoS attacks, and more.
  • 📡
    Exclusive Threat Feeds: Access the latest ransomware victim disclosures, breaches, and other critical updates.
  • 🖼️
    High-Resolution Screenshots: All posts include watermark-free, high-resolution images.
  • 🔗
    Direct Claim URLs: Instantly access claims with direct links for fast verification.

Click here to find out all of the exclusive benefits!

DarkWebInformer.com - Cyber Threat Intelligence

Quick Facts
📅 Date: 2025-01-17 11:53:07
🚨 Title: Alleged Leak of Multiple German Shopping Databases
🛡️ Victim Country: Germany
🏭 Victim Industry: E-commerce & Online Stores
🏢 Victim Organizations:

  • Dr. Thiel
  • Original Vogelliebe
  • Schiffsmodelle-Shop

🌐 Victim Sites:

  • Dr. Thiel
  • Original Vogelliebe
  • Schiffsmodelle-Shop

📜 Category: Data Breach
🔗 Claim: https://breachforums.st/Thread-Germany-Shopping-Databases
🕵️‍♂️ Threat Actor: Datahakase
🌍 Network: Openweb


WhiteIntel.io Data Leak Information

(Multiple sites disclosed; no data available)


Description

The threat actor known as Datahakase has advertised the sale of multiple databases from German shopping websites. The listing claims to offer exclusive access to customer data from Dr. Thiel, Original Vogelliebe, and Schiffsmodelle-Shop, containing a total of 71,500 lines of sensitive information.

The data for sale allegedly includes:

  • Dr. Thiel Database (14,500 lines):
    • First Name, Last Name
    • Email
    • Telephone Number
    • USTID (2,200 entries)
    • Hashed Passwords
  • Original Vogelliebe Database (22,000 lines):
    • First Name, Last Name
    • Email
    • ZIP Code, City
  • Schiffsmodelle-Shop Database (35,000 lines):
    • First Name, Last Name
    • Email
    • Street Address, House Number, Postal Code, City
    • Telephone Number
    • Company Names (limited entries)
    • USTID (limited entries)
    • Hashed Passwords

Prices for these databases range from €300 to €500.


Compromised Data

The combined dataset reportedly includes:

  • Names (First, Last)
  • Contact Information (Emails, Telephone Numbers)
  • Addresses (Street, House Number, Postal Code, City)
  • Hashed Passwords
  • Company Names (limited entries)
  • USTID (VAT Identification Numbers)

Implications

  1. Customer Privacy Violation
    Exposed customer data can lead to identity theft, phishing, and fraudulent activities.
  2. Brand Reputation Damage
    The affected businesses may suffer reputational harm and lose customer trust.
  3. Regulatory Penalties
    This breach could attract fines under GDPR for failing to protect customer data adequately.

Recommendations for Affected Organizations and Users

For Dr. Thiel, Original Vogelliebe, and Schiffsmodelle-Shop:

  1. Incident Notification
    Inform affected customers about the breach and provide guidance on securing their accounts.
  2. Database Security Review
    Conduct an immediate audit of database security to identify and fix vulnerabilities.
  3. Improve Security Protocols
    Implement stronger encryption methods, monitor database access logs, and conduct regular penetration tests.

For Users:

  1. Password Updates
    Change passwords on accounts associated with these platforms and avoid reusing passwords.
  2. Be Vigilant
    Watch for phishing attempts and unauthorized account activities.
  3. Data Monitoring
    Consider enrolling in identity theft monitoring services to detect potential misuse of personal data.

Latest