Overview
- Attackers exploited a third-party platform to access customer names, email addresses and phone numbers.
- Pandora has contained the breach, conducted extensive checks and sees no sign of the stolen data appearing online.
- The jewellery maker has reinforced its security systems and tightened oversight of external vendors.
- Customers are being warned to remain vigilant against phishing, avoid suspicious links or attachments and enable two-factor authentication.
- Attribution remains uncertain as investigations pursue the breach’s source, with possible links to Scattered Spider unconfirmed.