Today's cybersecurity headlines are brought to you by ThreatPerspective


Ethical Hacking News

The Dark Side of DIY: ManoMano Data Breach Exposes 38 Million Customers



European DIY chain ManoMano has been hit with a massive data breach, exposing the personal information of 38 million customers. The breach was caused by hackers compromising a third-party service provider. ManoMano has taken immediate action to secure its environment and notify affected customers. This incident highlights the importance of cybersecurity in today's digital age.

  • 38 million customers of European DIY chain ManoMano had their personal information exposed due to a massive data breach.
  • The breach was caused by hackers compromising a third-party customer service provider.
  • No account passwords were accessed, and no data modifications occurred on the company's systems.
  • Customers have been notified with recommendations for protecting their information, including verifying communications and monitoring bank accounts.
  • The breach highlights the importance of cybersecurity in today's digital age, especially with increasing amounts of personal data being stored online.



  • European DIY chain ManoMano has been hit with a massive data breach, exposing the personal information of 38 million customers. The breach, which was caused by hackers compromising a third-party service provider, has left many wondering how this happened and what can be done to protect against similar incidents in the future.

    According to reports, ManoMano confirmed that it learned of the hack in January 2026, after identifying unauthorized access linked to one of its third-party customer service providers. An investigation into the incident determined that the breach resulted in the unauthorized extraction of certain personal data associated with customer accounts and customer service interactions.

    The exposed information varies per individual, depending on the type of interactions they had with the platform. This includes full names, email addresses, phone numbers, customer service communications, and more. ManoMano has emphasized that no account passwords were accessed, and no data modifications occurred on the company's systems.

    To notify affected customers, ManoMano sent a notice containing recommendations for protecting their information. These include verifying incoming communications and sender identity, monitoring bank accounts for fraudulent transactions, and avoiding clicking on suspicious links or downloading email attachments. The company has also notified relevant authorities, including the CNIL and ANSSI, and informed impacted customers with guidance to remain vigilant against phishing and social engineering attempts.

    The breach is a stark reminder of the importance of cybersecurity in today's digital age. As more and more personal data is stored online, the risk of data breaches increases. It is essential for companies like ManoMano to take proactive measures to protect customer information and ensure that their systems are secure.

    In this article, we will delve deeper into the context of the breach and explore what can be done to prevent similar incidents in the future.

    The French e-commerce firm operates an online marketplace specializing in DIY, home improvement, gardening, and related products. It operates in France, Belgium, Spain, Italy, Germany, and the United Kingdom, with its e-stores reportedly having 50 million unique visitors per month.

    Earlier this month, someone using the alias "Indra" claimed that they were holding details on 37.8 million user accounts, as well as thousands of support tickets and attachments. According to unconfirmed reports, the compromised organization was a Tunis-based customer support service provider that suffered a Zendesk breach.

    Cybersecurity firm Hackmanac posted that ManoMano started notifying customers this week that their data had been stolen. A spokesperson for ManoMano explained to BleepingComputer that the exposed information varies per individual, depending on the type of interactions they had with the platform.

    The company has taken immediate action to secure its environment, including disabling the relevant access, revoking the subcontractor's access to customer data, and strengthening access controls and monitoring. ManoMano has also informed impacted customers with guidance to remain vigilant against phishing and social engineering attempts.

    In conclusion, the breach of 38 million customers at ManoMano is a serious incident that highlights the importance of cybersecurity in today's digital age. By taking proactive measures to protect customer information and ensure system security, companies can reduce the risk of similar incidents in the future.

    Summary:
    European DIY chain ManoMano has been hit with a massive data breach, exposing the personal information of 38 million customers. The breach was caused by hackers compromising a third-party service provider. ManoMano has taken immediate action to secure its environment and notify affected customers. This incident highlights the importance of cybersecurity in today's digital age.



    Related Information:
  • https://www.ethicalhackingnews.com/articles/The-Dark-Side-of-DIY-ManoMano-Data-Breach-Exposes-38-Million-Customers-ehn.shtml

  • https://www.bleepingcomputer.com/news/security/european-dyi-chain-manomano-data-breach-impacts-38-million-customers/

  • https://logixbpo.com/daily-news/manomano-data-breach-via-zendesk/


  • Published: Thu Feb 26 13:31:47 2026 by llama3.2 3B Q4_K_M













    © Ethical Hacking News . All rights reserved.

    Privacy | Terms of Use | Contact Us