Connect with us

Headlines

Luxottica Data Breach Included the Personal Information of 70M Customers

The entire database of the previously undisclosed hack from 2021 recently was made available for free on the dark web.

mm

Published

on

Luxottica Data Breach Included the Personal Information of 70M Customers

A post on the now-defunct hacker site Breached which claimed a previously unknown cybersecurity attack on Luxottica in 2021.

A database containing the personal information of more than 70 million Luxottica customers has been leaked twice in the past month on the dark web.

The records were stolen during a previously undisclosed data breach in 2021. An individual allegedly attempted to sell the data in November 2022. Recent leaks, the first on April 30 and the second on May 12, made the database available for free.

According to the cybersecurity news site BleepingComputer, Luxottica confirmed that the security breach occurred when a third-party contractor with access to customer data incurred a systems hack.

“We discovered through our proactive monitoring procedures that certain retail customer data, allegedly obtained through a third-party related to Luxottica retail customers, was published in an online post,” Luxottica told the online site.

“We immediately reported the incident to the FBI and the Italian Police. The owner of the website where the data was posted has been arrested by the FBI, the website was shut down and the investigation is ongoing. The Italian data protection authority has also been notified and we are considering other notification obligations.”

Advertisement

Italian cybersecurity firm D3Lab confirmed the authenticity of the stolen database. Andrea Draghetti, a researcher at the firm, determined the data was extracted on March 16, 2021.

This latest revelation is separate from a pair widely-reported cybersecurity incidents at Luxottica in 2020.

In August of that year, the company suffered a ransomware attack which shut down its online operations in Italy and China, and created website issues across its global footprint. A few weeks later, the company reported a patient data breach associated with its scheduling app which included the information of more than 800K individuals.

SPONSORED VIDEO

SPONSORED BY VARILUX

The Best Overall Progressive Lens, Now Powered by AI

Engineered with Behavioral Artificial Intelligence and utilizing new XR-motion™ technology, Varilux XR series goes beyond prescription and eye physiology to consider the patient’s visual behavior and design a progressive lens that respects how
their eyes naturally move.

Varilux XR series comes in two versions, Varilux® XR design and Varilux® XR track. The Varilux XR track lens provides an additional level of personalization by incorporating the exclusive Near Vision Behavior Measurement, providing up to 25% more near vision width3 according to the patient’s need, so patients get the highest level of customization.

Discover Varilux XR series and enjoy instantly sharp vision in motion4 and seamless transitions from near to far.

For more information, visit here.

Promoted Headlines

Advertisement

Advertisement

Subscribe

INVISIONMAG.COM
BULLETINS

Get the most important news and business ideas for eyecare professionals every weekday from INVISION.

Advertisement

Advertisement

Most Popular