ManoMano Data Breach: 38 Million Users Allegedly Impacted
The European e‑commerce giant ManoMano, known for DIY, gardening, and home improvement products, has reportedly suffered a massive data breach affecting nearly 38 million customers across France, Germany, Italy, Spain, and the UK.
What Happened?
Hackers allegedly gained unauthorized access to ManoMano’s customer support portal, which was powered by Zendesk. The breach is believed to have originated through a subcontractor in Tunisia.
A threat actor known as Indra claimed responsibility, stating they stole 43GB of sensitive data, including:
- Names, email addresses, and phone numbers
- Customer service tickets (900,000 records)
- Attachments (13,000 files)
Why This Matters
For affected customers, the risks are serious:
- Phishing attacks: Exposed emails and phone numbers could be used in scams.
- Identity theft: Personal details combined with service exchanges may help attackers impersonate customers.
- Reputation damage: Trust in ManoMano’s handling of customer data may decline.
How Customers Can Protect Themselves
If you are a ManoMano customer, here are practical steps to reduce risk:
- Change passwords: Update your ManoMano account and any accounts using the same credentials.
- Enable two‑factor authentication: Adds an extra layer of security.
- Beware of suspicious emails or calls: Do not click on links or share personal information.
- Monitor financial accounts: Watch for unusual activity.
ManoMano’s Response
The breach reportedly occurred in January 2026, but ManoMano began notifying customers in late February. The company has not yet disclosed whether payment data was compromised, but emphasized that investigations are ongoing.
Broader Context
This incident follows a wave of high‑profile breaches:
- CarGurus: 12 million users impacted.
- Wynn Resorts: Hackers removed stolen data after negotiations.
- PayPal: Led to fraudulent transactions.
Final Thoughts
The ManoMano breach underscores the growing vulnerability of e‑commerce platforms. With millions of users’ personal data exposed, the incident highlights the importance of cybersecurity vigilance for both businesses and consumers.
Follow Us On – X.com, Telegram, LinkedIN, Discord Server,
For The Latest Updates, Vulnerability Insights, Security News, Cyberattack Scoops And Cybersecurity Best Practices Delivered Straight To Your Inbox – Subscribe To Our Newsletter