Skoda Shop Breach Exposes Hashes and Order History

This was not just a customer-data leak. Exposed order details and password hashes turn a portal breach into a follow-on fraud problem, because attackers can use the records to impersonate Skoda and test reused credentials against other services. Skoda says the online shop was taken offline after a portal software vulnerability was found and patched. The accessed data included names, addresses, email addresses, phone numbers, order details, and user account information, and no credit card data was stored on its systems. The company has not said how many people were affected. Even without payment-card theft, the combination of account material and purchase history gives attackers enough context for convincing phishing and credential-stuffing against customers.

Part of the PlainSec briefing for 2026-05-13

Sources