Lidl has notified customers across Germany, Belgium, and the Netherlands that their personal information was compromised in a breach targeting a third-party service provider.
The German discount supermarket chain discovered that attackers accessed customer data stored by an external service provider handling Lidl's online operations. The breach exposed personal information of users in the three affected countries.
Lidl did not immediately disclose the full scope of compromised data or the identity of the affected service provider. The company began notifying impacted customers and advised them to monitor their accounts.
The breach highlights ongoing security vulnerabilities in third-party vendor relationships. Service providers handling sensitive customer data for major retailers remain common targets for cybercriminals seeking to exploit weaker security controls.
Lidl has not announced additional details about the attack timeline, number of affected customers, or specific data categories compromised. Customers in affected regions should monitor communications from the retailer for remediation steps and potential protective services offered.
Fraudsters are exploiting Microsoft Teams and similar enterprise chat apps to deceive Chinese users into sending large sums of money. The trend has sparked a wave of complaints across the region.
The Bureau of Alcohol, Tobacco, Firearms and Explosives has notified Congress of a major cybersecurity incident after a ransomware gang claimed responsibility for breaching the agency's systems.
Google is rolling out Encrypted Client Hello (ECH) support in Android 17 to prevent network monitoring of user browsing activity. The privacy feature strengthens connection security across cellular and home networks.
A new survey shows more Americans oppose police use of license plate readers than support them. The finding reflects growing concerns about surveillance overreach.