ThreatCluster

ASOS Reports Data Breach from Compromised Customer Credentials

First seen 26 Aug 2026, 01:52 UTC GbhackersCybersecuritynews 51

Article Content

Browse articles
ThreatCluster

ASOS US Sales LLC has confirmed unauthorized access to customer accounts due to compromised login credentials sourced externally. The breach was detected on July 28, 2026, when unusual activity was identified in certain accounts. An investigation initiated the following day confirmed the unauthorized access. ASOS has begun notifying affected customers in the U.S. as of August 21, 2026. The retailer has not disclosed the number of accounts affected or specific details about the compromised credentials. The investigation is ongoing, and ASOS is advising customers to change their passwords and monitor their accounts for suspicious activity.

Key Points: • ASOS detected unauthorized access to customer accounts on July 28, 2026. • The breach involved compromised login credentials obtained externally. • Affected customers are being notified, but the number of impacted accounts remains undisclosed.

Timeline

2026-07-28
Unauthorized access detected
ASOS identified unusual activity in customer accounts, leading to an investigation.
Cybersecuritynews
2026-07-29
Investigation initiated
ASOS confirmed unauthorized access and began a thorough investigation into the breach.
Gbhackers
2026-08-21
Breach notification issued
ASOS issued a notification to affected customers regarding the breach and recommended actions.
Cybersecuritynews