Planteshop
We noticed a significant data exposure originating from Planteshop, a Danish online retailer specializing in horticultural products. The incident, which surfaced on July 2nd, 2025, involved a Telegram channel where a dataset containing personal information of nearly 16,000 individuals was disseminated. What struck us was the relatively straightforward nature of the compromised data, yet its potential for broad downstream impact given the target demographic. The discovery highlights a recurring vulnerability in how customer databases are secured, particularly for e-commerce platforms that collect essential contact and identification details.
The breach breakdown reveals that a database belonging to Planteshop was compromised, leading to the exposure of 15,994 records. The leaked data includes essential personally identifiable information (PII) such as email addresses, phone numbers, first names, and last names. While geographic locations were also mentioned, the precise granularity of this information is still under investigation. The source structure of the leak points to a direct database exfiltration, rather than a sophisticated supply chain attack or a complex multi-stage compromise. The data subsequently appeared on a public Telegram channel, indicating a lack of robust internal security controls or a rapid exploitation of a discovered vulnerability. The threat themes here are primarily focused on identity theft, targeted phishing campaigns, and potentially doxing, given the combination of contact and identification details.
At this juncture, there is no readily available public news coverage or extensive OSINT that directly links this specific Planteshop data leak to broader cybercrime trends or significant public discourse. However, the incident aligns with a consistent pattern observed in the retail and e-commerce sectors, where customer databases remain attractive targets for threat actors. Research from various cybersecurity firms consistently points to database vulnerabilities and misconfigurations as primary vectors for data breaches in this industry. The ease with which such data can be leveraged for spear-phishing attacks or sold on dark web marketplaces underscores the persistent threat landscape for online retailers.
Breach Breakdown
15,994 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds