A major data breach involving LensDeal, a Netherlands-based contact lens supplier, has reportedly exposed the personal information of over 100,000 customers.
According to the Cyber Security Hub post, the breach affects 115,096 individuals and includes sensitive details such as full names, birthdates, email addresses, hashed passwords, IP addresses, and in some cases, company details.
Some customer records date back several years, while others are as recent as early 2025, hinting that the breach itself may be recent and far-reaching.
The data, which was allegedly stolen from LensDeal’s internal systems, has not yet been verified.
However, cybersecurity experts analyzing samples shared in the forum have noted that the data’s structure and formatting strongly suggest validity.
LensDeal has yet to issue an official statement on the matter, leaving customers and privacy advocates in the dark about the company’s response.
The exposed information poses a significant risk to the affected individuals, according to cybersecurity specialists.
The combination of names, contact details, and other personal information creates an ideal scenario for malicious actors to conduct phishing attacks, identity theft, or unauthorized account access.
Experts are urging LensDeal customers to respond proactively. Immediate steps include:
If confirmed, the LensDeal breach will add to the growing trend of European e-commerce platforms becoming targets for hackers.
With cybercriminals increasingly exploiting vulnerabilities in online retailers, including small and medium-sized enterprises, consumers’ data often becomes collateral damage.
The incident underscores the urgent need for businesses to adopt robust cybersecurity measures, such as encrypted customer databases and timely security audits.
Customers, too, must remain informed and cautious about the online platforms they engage with.
As the situation develops, LensDeal’s silence has drawn criticism, with users and experts calling for transparency from the company.
Authorities and independent groups are expected to investigate the breach further to verify its scope and legitimacy.
Investigate Real-World Malicious Links & Phishing Attacks With Threat Intelligence Lookup - Try for Free
Ivanti has issued an urgent security advisory for CVE-2025-22457, a critical vulnerability impacting Ivanti Connect…
A concerning malware campaign was disclosed by the AhnLab Security Intelligence Center (ASEC), revealing how…
EncryptHub, a rapidly evolving cybercriminal entity, has come under intense scrutiny following revelations of operational…
A sophisticated phishing campaign, dubbed "PoisonSeed," has been identified targeting customer relationship management (CRM) and…
A surge in phishing text messages claiming unpaid tolls has been linked to a massive…
The State Bar of Texas has confirmed a data breach following the detection of unauthorized…