www.nrc.nl Massive Data Breach at Basic-Fit and Booking.com Exposes Millions of Customer Records
Article Content
- •Basic-Fit data breach affects 1 million customers across six countries.
- •Sensitive customer information, including bank details, has been compromised.
- •Booking.com also reports unauthorized access to customer booking data.
A significant data breach has occurred at Basic-Fit, affecting approximately 1 million customers across six countries, including the Netherlands, Belgium, France, Spain, Luxembourg, and Germany. The compromised data includes sensitive information such as names, addresses, email addresses, phone numbers, birth dates, and bank account details. Basic-Fit reported that the breach was detected and contained shortly after it began, but data from about 200,000 Dutch customers and 150,000 to 200,000 Belgian customers were already downloaded. The incident was reported to the Dutch Data Protection Authority within the legally required 72 hours. Concurrently, Booking.com has also experienced a security incident, where unauthorized access to customer booking information has been detected, although the extent of the impact remains unclear. Both companies are currently investigating the breaches and have taken steps to secure their systems. No identities or passwords were reported stolen in the Basic-Fit breach.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track Basic-Fit in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical Cisco FMC Vulnerabilities Under Active Exploitation Cisco's Secure Firewall Management Center (FMC) Software has two critical vulnerabilities, CVE-2026-20079 and CVE-2026-20316, that are currently being exploited by state-sponsored and ransomware actors. CVE-2026-20079, rated 10.0 on the CVSS scale, allows unauthenticated remote attackers to bypass authentication and…
Critical GitLab Vulnerabilities Exploited Within Hours of Disclosure On September 10, 2026, GitLab released patches for critical vulnerabilities CVE-2026-85706 and CVE-2026-87719. CVE-2026-85706, a path traversal flaw, allows unauthenticated users to read arbitrary files from GitLab servers, while CVE-2026-87719 enables credential theft via insecure deserialization. Both…