Data leak

Pandora and Chanel Salesforce ShinyHunters Breach

πŸ“… 2025-07-01 🏒 Salesforce
Primary Source β†—

Incident Details

Pandora (Danish jewelry brand) and Chanel (French luxury fashion house) both disclosed in August 2025 that their Salesforce CRM environments had been compromised as part of the ShinyHunters/Scattered Spider Salesforce campaign. Pandora exposure included names, birthdates, and email addresses. Chanel exposure included customer names, email addresses, mailing addresses, and phone numbers. Both companies notified affected customers and relevant European data protection authorities (DPA). Part of the broader 2025 Salesforce campaign affecting TransUnion (44M+), Air France-KLM, Cisco, Stellantis, and Farmers Insurance.

Technical Details

Initial Attack Vector
ShinyHunters compromised Pandora and Chanel's Salesforce CRM environments through social engineering / vishing, part of the broader 2025 ShinyHunters Salesforce campaign targeting major brand CRM instances
Vendor / Product
Salesforce

Timeline

  1. 2025-07-01 Breach occurred
  2. 2025-08-20 Publicly disclosed
  3. 2025-08-20 Customers notified