Data Breaches

Dodo Pizza Breach Exposed Reusable Customer Profiles

Dodo Pizza confirmed a breach after DataSuckers’ claims, saying customer data tied to its 1,500 restaurants in 28 countries may have been exposed. The company said the haul included names, addresses, email addresses, phone numbers, dates of birth, and order details, and that it does not store payment information.

That mix matters because profile data and purchase history are enough to support phishing, impersonation, and localized fraud even when card data is absent. Dodo said the attackers’ access was blocked and an internal investigation is ongoing; DataSuckers claimed it could sell the database and said it held records for millions of customers, though those claims were not independently verified.

For retailers and consumer brands that keep customer profiles and order history, the exposure can outlive the intrusion: the dataset itself is the asset, and cross-border records can be reused wherever the company serves customers.

1 source · 7h ago

Timeline

Sources

Part of the PlainSec briefing for 2026-09-29

Every edition of this story: Dodo Pizza Breach Exposed Reusable Customer Profiles

More from today