[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f3n2mwrvy8i423":3},{"success":4,"breach":5},true,{"_id":6,"name":7,"title":8,"slug":7,"domain":9,"breachDate":10,"addedDate":11,"modifiedDate":12,"contentUpdatedAt":13,"source":14,"sourceUrl":15,"sourceUrls":16,"pwnCount":17,"affectedCount":17,"affectedCountStatus":18,"affectedCountLowerBound":19,"affectedCountUnit":20,"hasEnglishDescription":4,"severity":21,"dataClasses":22,"description":28,"seoTitle":15,"seoTitleEn":29,"seoDescription":15,"seoDescriptionEn":30,"logoUrl":31,"isVerified":4,"isSensitive":4,"isSpamList":32,"isMalware":32,"company":33},"68e3266eda11adda48825165","cultura","Cultura Data Breach","cultura.com","2024-09-06T00:00:00.000Z","2025-09-25T01:50:55.000Z","2026-07-02T05:14:39.187Z","2026-07-18T23:49:08.761Z","Third party breach","",[],1462025,"known",null,"unknown","Critical",[23,24,25,26,27],"Email addresses","Names","Phone numbers","Physical addresses","Purchases","\u003Cp>Cultura is a France-based bookstore, culture, and retail chain. In September 2024, as a result of a cyberattack associated with an external IT service provider, approximately 1.5 million customer records were affected; email, name, phone number, physical address, and order information were exposed.\u003C\u002Fp>\u003Cp>Although the Cultura incident is evaluated together with French retail attacks that emerged in the same period, such as Boulanger, each record should be kept limited to its own fields. The company stated that affected customers have been informed and that password or bank data was not affected.\u003C\u002Fp>\u003Ch2>Leaking Data Types and Risks\u003C\u002Fh2>\u003Cp>The data classes tracked in the Cultura record should be considered as email addresses, full name information, phone numbers, physical addresses, and purchase records. Email addresses can be used for targeted phishing, password reset schemes, and account matching across different services. Full name information makes fake support, fake delivery, fake invoice, and customer service messages more convincing. Phone numbers allow personalized fraud scenarios to be set up via SMS, calls, and messaging apps. Physical addresses can be used in delivery, invoice, subscription, and local service-themed social engineering messages. Purchase records can make messages coming under the pretext of past orders, returns, warranties, or product support more convincing.\u003C\u002Fp>\u003Cp>When order history and address information are together, fake delivery, return, product support, or campaign messages may appear more realistic. Adding phone and email information makes it easier for attackers to reach the same user through different channels.\u003C\u002Fp>\u003Ch2>Verified Scope and Boundaries\u003C\u002Fh2>\u003Cp>This record is related to the domain name cultura.com and the September 2024 incident. The scope is limited to email, full name, phone, physical address, and purchase records. Password, bank information, or payment card are not verified data classes for this record.\u003C\u002Fp>\u003Cp>Areas not included in this record should not be described as if they have leaked. Fields such as full payment card, official ID, private message, health data, bank information, or device content should only be added to the risk assessment when they are explicitly present in the record. The text is based on verifiable data classes and the known boundaries of the incident.\u003C\u002Fp>\u003Ch2>User Groups at Risk\u003C\u002Fh2>\u003Cp>Cultura customers, users who order books and cultural products, people who save the delivery address in their account, and customers who respond quickly to return or shipping messages are at higher risk.\u003C\u002Fp>\u003Cp>Users who use the same email address on different services, repeat old passwords, do not separate work and personal accounts, or share phone and address information on multiple platforms are at higher risk. In data collection or B2B profile records, the risk should also be assessed based on the profile effect consolidated from different sources rather than a single account.\u003C\u002Fp>\u003Ch2>Urgent Measures to Be Taken\u003C\u002Fh2>\u003Cp>Users should verify orders, returns, deliveries, or support links received on behalf of Cultura through the official account. Since password and bank data are not verified, the main focus is to distinguish fraudulent messages personalized with order information.\u003C\u002Fp>\u003Cp>Users in the positive match area should update their passwords on accounts where they use the same or similar passwords, enable two-factor authentication where possible, and check their recent sessions. For records that do not contain passwords but include communication or profile data, caution should be exercised against unexpected calls, offers, returns, partnerships, and verification messages.\u003C\u002Fp>\u003Ch2>Long-Term Security Strategies\u003C\u002Fh2>\u003Cp>In the long term, the habit of using a password manager, unique passwords, two-factor authentication, and removing unnecessary personal information from accounts reduces risk. Reusing the same email address across different platforms makes it easier to combine data from different breaches; using a separate email or alias for critical accounts can be considered.\u003C\u002Fp>\u003Cp>In retail accounts, purchase history, address, and phone information should be cleaned if unnecessary. Users should consider that if the same email and phone combination is used in different stores, this data could be combined with other breaches.\u003C\u002Fp>\u003Ch2>Record Control and User Action\u003C\u002Fh2>\u003Cp>LeakData check indicates whether the queried email address is found in this record. A positive result does not necessarily mean that all data fields definitely belong to that user; however, it is a sufficient warning for precautionary measures. A negative result only indicates that there is no match in this dataset, and does not eliminate the possibility of appearing in other breaches.\u003C\u002Fp>\u003Cp>A positive result indicates that the email address appears in Cultura's customer data. This result does not mean a password or bank information leak; however, it requires attention due to the context of orders and deliveries.\u003C\u002Fp>","Cultura Data Breach (1.5 Million Reported Records)","Cultura Data Breach. 1.5 Million reported records were reported. Reported data: Email addresses, Names, Phone numbers. Review the scope, risks, and protective…","\u002Fuploads\u002Flogo\u002Fcultura_com.webp",false,{"name":34,"sector":35,"country":36,"website":9,"websiteArchiveUrl":15,"websiteStatus":15,"websiteCheckedAt":19},"Cultura","Retail \u002F Culture","France"]