Hacker Claims to Leak 400K Records from Dutch Webshop Bol
Severity: Medium (Score: 48.9)
Sources: Scworld, Cybernews
Summary
A hacker using the alias 'Jeffrey Epstein' claims to have stolen personal data from over 400,000 Belgian customers of Bol, the largest webshop in the Netherlands and Belgium. The leaked dataset reportedly includes full names, addresses, email addresses, phone numbers, dates of birth, order history, shipping data, and tracking numbers, but does not contain passwords or financial information. The hacker has uploaded a sample of the data to prove its legitimacy and is offering it for sale via Telegram or Session. Bol has denied any knowledge of a data breach, stating that all systems are functioning normally. The potential for identity theft and phishing attacks is significant given the detailed nature of the stolen data. Bol operates with over 44,200 sales partners and serves more than 14 million customers, making the breach particularly impactful. As of now, there is no evidence of ransomware involved in this incident. Key Points: • Over 400,000 Belgian customer records allegedly stolen from Bol webshop. • Hacker claims to have proof of the breach by sharing a data sample. • Bol denies any breach, stating all systems are operating normally.
Key Entities
- Data Breach (attack_type)
- Phishing (attack_type)
- Bol (company)
- Belgium (country)
- Netherlands (country)
- CWE-200 - Exposure of Sensitive Information (cwe)
- tweakers.net (domain)
- T1041 - Exfiltration Over C2 Channel (mitre_attack)
- T1566 - Phishing (mitre_attack)
- T1567 - Exfiltration Over Web Service (mitre_attack)
- Session (platform)
- Telegram (platform)