Asos hackers took more personal details than first revealed, BBC finds
Asos has revised the scope of a recent data breach after cyber criminals contacted the BBC to say the stolen data went beyond the basic contact details the retailer initially disclosed. The full extent of what was taken has not yet been confirmed publicly.
Why this matters: Companies almost always start with the smallest possible version of a breach. That is not a coincidence. When hackers themselves are the ones correcting the record, it tells you how reliable the first disclosure was. Asos customers now face an unknown gap between what they were told was taken and what actually was. That gap matters because different data carries different risk. Contact details are one thing. Payment information, purchase history, or account credentials are another. You cannot protect yourself from a breach if you do not know what was in it.
Who should care: Cybersecurity · Privacy officers · Administrators
This summary is AI-assisted and may contain errors. It is an original briefing to help you gauge significance quickly — not a reproduction of the source. Always read the linked original before relying on it. See our methodology.