Sotheby's International Realty Investigates Cyber Attack on CRM Data

Sotheby's International Realty Investigates Cyber Attack on CRM Data

First seen 25 Aug 2026, 10:17 UTC Rnz.Co.Nz1News.Co.Nz 36.3

Article Content

Browse articles
ThreatCluster

Sotheby's International Realty is investigating a cyber security incident involving unauthorized access to data in a third-party Customer Relationship Management (CRM) system. The compromised data includes names, addresses, phone numbers, and email addresses, but no financial transaction information or property-related documents were accessed. The firm has engaged independent cyber security specialists to assist with the investigation and has taken immediate steps to contain the incident. A claim by the threat actor suggested the theft of 1.6 million contacts, which Sotheby's refuted, stating that the actual number relates to duplicate entries. The company has communicated the breach to its client database and expressed regret over the incident. The forensic investigation is ongoing, and the firm is committed to transparency in its updates.

Key Points: • Sotheby's International Realty experienced a cyber security incident involving unauthorized data access. • The compromised CRM system contained limited marketing-related information, not financial data. • Sotheby's refuted claims of 1.6 million stolen contacts, attributing the number to duplicates.

Timeline

2026-08-25
Cyber security incident disclosed
Sotheby's International Realty announced unauthorized access to data in a third-party CRM system, affecting client information.
1News.Co.Nz
2026-08-25
Threat actor claims data theft
The attacker claimed to have obtained 1.6 million contacts, which Sotheby's disputed, citing duplicate entries.
Rnz.Co.Nz
2026-08-25
Client notification sent
Sotheby's informed its client database about the breach and expressed regret over the incident.
1News.Co.Nz