# ASOS links customer data exposure to stolen employee credentials

_Published Thursday, October 8, 2026 at 8:14 AM EDT · Security, Products · Latest · Tier 2 — Notable_

![ASOS links customer data exposure to stolen employee credentials — Primary](https://www.bleepstatic.com/content/hl-images/2026/10/06/asos-logo.jpg)

ASOS confirmed that attackers obtained an employee's login credentials by impersonating a trusted contact and used them to access information on third-party platforms. Its latest customer update identifies exposed data as full names, contact details, and certain non-personal account-related information.

The retailer says attackers did not access payment card information or account passwords. It locked down the affected platforms and is investigating with external experts, law enforcement, and regulatory authorities. ASOS warned customers to be cautious of unexpected messages or calls claiming to come from the company. The investigation remains underway, and the number of affected customers has not been reported.

## Sources

- [BleepingComputer](https://www.bleepingcomputer.com/news/security/asos-links-data-breach-to-social-engineering-attack-credential-theft/)

---
Canonical: https://techandbusiness.org/newswire/MjU2Z8kNE0rzxdFP_YLlpe
Published: 2026-10-08T12:14:05.679Z
Story chronology: 2026-10-08T11:42:46.000Z
Retrieved: 2026-10-08T14:28:56.609Z
Publisher: Tech & Business (techandbusiness.org)
