The data breach allowed hackers to access customer details from fashion brand AX Paris.
Around 9 July a “white hat hacker” or “ethical hacker” breached one of company’s web servers.
Clients were advised to file reports with the Information Commissioner’s Office, and Fashion Nexus also filed a breach report.
1.4 million users had their details hacked.
The majority had their names and email addresses accessed, and one-fifth also had their home address details accessed.
No payment card information was stored in the databases.
Source: https://www.drapersonline.com/news/data-hacked-at-web-provider-fashion-nexus
TPRM report: https://scoringcyber.rankiteo.com/company/www-axparis-co-uk-ltd
"id": "www223951122",
"linkid": "www-axparis-co-uk-ltd",
"type": "Breach",
"date": "08/2018",
"severity": "100",
"impact": "4",
"explanation": "Attack with significant impact with customers data leaks"
{'affected_entities': [{'customers_affected': 1400000,
'industry': 'Fashion',
'name': 'AX Paris',
'type': 'Company'}],
'attack_vector': 'Web Server Breach',
'customer_advisories': 'Clients were advised to file reports with the '
'Information Commissioner’s Office.',
'data_breach': {'number_of_records_exposed': 1400000,
'personally_identifiable_information': True,
'type_of_data_compromised': ['Names',
'Email Addresses',
'Home Addresses']},
'date_detected': '2023-07-09',
'description': 'The data breach allowed hackers to access customer details '
'from fashion brand AX Paris.',
'impact': {'data_compromised': ['Names', 'Email Addresses', 'Home Addresses'],
'systems_affected': ['Web Servers']},
'initial_access_broker': {'entry_point': 'Web Server'},
'regulatory_compliance': {'regulatory_notifications': 'Fashion Nexus filed a '
'breach report with the '
'Information '
'Commissioner’s '
'Office.'},
'response': {'communication_strategy': 'Clients were advised to file reports '
'with the Information Commissioner’s '
'Office, and Fashion Nexus also filed '
'a breach report.'},
'threat_actor': 'White Hat Hacker / Ethical Hacker',
'title': 'Data Breach at AX Paris',
'type': 'Data Breach'}