Love, Bonito Reports Data Breach Affecting Customer Information
Singapore-based fashion retailer Love, Bonito disclosed a data breach on July 30, revealing that unauthorized access to customer account information occurred due to a security vulnerability in its website. The issue was detected on July 26 and resolved the same day, with the company implementing additional safeguards to prevent recurrence.
Potentially exposed data includes customers’ names, birth dates, email addresses, shipping addresses, and phone numbers. Payment details, such as the last four digits and expiry dates of cards used on the site, may also have been accessed. However, full credit card information was not compromised, as it is processed and stored by a third-party payment processor.
Love, Bonito CEO Dione Song confirmed that all affected customers in Singapore have been notified and that the company is cooperating with investigations by the Personal Data Protection Commission (PDPC), Singapore Police Force, and regional authorities. The incident remains under review, with no further details disclosed at this time.
The breach follows a 2019 incident that resulted in a $24,000 fine for Love, Bonito in 2024. The company has advised customers to remain vigilant against phishing attempts and monitor payment card activity. Authorities, including the Cyber Security Agency of Singapore, have been contacted for further information.
Love, Bonito Pte Ltd cybersecurity rating report: https://www.rankiteo.com/company/love-bonito-pte-ltd
"id": "LOV1785429619",
"linkid": "love-bonito-pte-ltd",
"type": "Breach",
"date": "7/2026",
"severity": "85",
"impact": "4",
"explanation": "Attack with significant impact with customers data leaks"
{'affected_entities': [{'customers_affected': 'All affected customers in '
'Singapore',
'industry': 'Fashion',
'location': 'Singapore',
'name': 'Love, Bonito',
'type': 'Retailer'}],
'attack_vector': 'Security vulnerability in website',
'customer_advisories': 'Advised to remain vigilant against phishing attempts '
'and monitor payment card activity',
'data_breach': {'personally_identifiable_information': 'Yes',
'sensitivity_of_data': 'High',
'type_of_data_compromised': ['Names',
'Birth dates',
'Email addresses',
'Shipping addresses',
'Phone numbers',
'Last four digits of payment '
'cards',
'Expiry dates of payment cards']},
'date_detected': '2024-07-26',
'date_publicly_disclosed': '2024-07-30',
'date_resolved': '2024-07-26',
'description': 'Singapore-based fashion retailer Love, Bonito disclosed a '
'data breach on July 30, revealing that unauthorized access to '
'customer account information occurred due to a security '
'vulnerability in its website. The issue was detected on July '
'26 and resolved the same day, with the company implementing '
'additional safeguards to prevent recurrence.',
'impact': {'data_compromised': 'Names, birth dates, email addresses, shipping '
'addresses, phone numbers, last four digits '
'and expiry dates of payment cards',
'identity_theft_risk': 'High',
'payment_information_risk': 'Moderate',
'systems_affected': 'Customer account information system'},
'investigation_status': 'Under review',
'recommendations': 'Customers advised to remain vigilant against phishing '
'attempts and monitor payment card activity',
'references': [{'source': 'Love, Bonito Disclosure'}],
'regulatory_compliance': {'fines_imposed': '$24,000 (previous incident in '
'2019, fined in 2024)',
'regulations_violated': ['Personal Data Protection '
'Act (PDPA)'],
'regulatory_notifications': 'Personal Data '
'Protection Commission '
'(PDPC), Singapore '
'Police Force, regional '
'authorities'},
'response': {'communication_strategy': 'Notified affected customers, advised '
'vigilance against phishing',
'containment_measures': 'Security vulnerability resolved, '
'additional safeguards implemented',
'law_enforcement_notified': 'Yes',
'remediation_measures': 'Additional safeguards to prevent '
'recurrence'},
'title': 'Love, Bonito Data Breach Affecting Customer Information',
'type': 'Data Breach'}