[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f4h6qee0rc177":3},{"success":4,"breach":5},true,{"_id":6,"name":7,"title":8,"slug":9,"domain":10,"breachDate":11,"addedDate":12,"modifiedDate":13,"contentUpdatedAt":13,"source":14,"sourceUrl":15,"sourceUrls":16,"pwnCount":18,"affectedCount":18,"affectedCountStatus":19,"affectedCountLowerBound":20,"affectedCountUnit":21,"hasEnglishDescription":4,"severity":22,"dataClasses":23,"description":30,"seoTitle":31,"seoTitleEn":32,"seoDescription":31,"seoDescriptionEn":33,"logoUrl":34,"isVerified":4,"isSensitive":35,"isSpamList":35,"isMalware":35,"company":36},"68e3266eda11adda4882525c","KomplettFritid","KomplettFritid 2021 Data Breach","komplettfritid","komplettfritid.no","2021-02-01T00:00:00.000Z","2023-01-23T22:24:47.000Z","2026-07-29T22:39:36.959Z","Verified breach record","https:\u002F\u002Fwww.digi.no\u002Fartikler\u002Fselger-datalekkasje-med-140-000-berorte-kunder-fra-lars-monsens-nettbutikk\u002F525070",[15,17],"https:\u002F\u002Fweb.archive.org\u002Fweb\u002F20260217140520id_\u002Fhttps:\u002F\u002Fkomplettfritid.no\u002F",139401,"known",null,"email_identifiers","High",[24,25,26,27,28,29],"Email addresses","IP addresses","Names","Passwords","Phone numbers","Physical addresses","\u003Cp>\u003Cstrong>The KomplettFritid 2021 data breach\u003C\u002Fstrong> covers 139,401 unique email addresses associated with the Norwegian online outdoor-goods retailer. The verified external record lists email and IP addresses, names, passwords, phone numbers, and physical addresses. The figure is an external email measure; it is not the same as a local row count or a count of unique people.\u003C\u002Fp>\n\n\u003Ch2>What do the date and sources establish?\u003C\u002Fh2>\n\u003Cp>The external record dates the event only to February 2021 and uses February 1 as the technical start of that month; because the exact access day is not public, this entry records month-level precision. In January 2023, Norwegian technology publication Digi reported that stolen information relating to about 140,000 customers was being sold. Its public headline and summary say the company acknowledged that the personal information could be misused; details behind the subscription wall are not treated as independently verified.\u003C\u002Fp>\n\n\u003Cp>The verified external record supplies 139,401 unique emails and six data classes. It says most passwords were bcrypt hashes while a small number appeared in plaintext. The initial access method, exact acquisition or publication time, the number of plaintext passwords, and field-level coverage are not disclosed.\u003C\u002Fp>\n\n\u003Ch2>How is the local import separated from the external record?\u003C\u002Fh2>\n\u003Cp>The completed local job processed only the explicit email column in \u003Ccode>komplettfritid-emails.txt\u003C\u002Fcode>. It accepted 139,374 valid lines and, after lowercasing and deduplication, wrote 139,350 unique email associations to the live index. The 24-record gap between valid input and indexed associations reflects that deduplication.\u003C\u002Fp>\n\n\u003Cp>The external measure of 139,401 unique emails is 51 above the live local association count. The values are not added together. The local job has no IP, name, password, phone, or physical-address column, so the external classes do not imply that those fields are stored with a local email match.\u003C\u002Fp>\n\n\u003Ch2>What are the domain and risk boundaries?\u003C\u002Fh2>\n\u003Cp>komplettfritid.no still resolves and negotiates TLS, but it currently returns Shopify's “Store unavailable” page with HTTP 402. The most recent working archive from February 17, 2026 verifies the outdoor, camping, and clothing retailer identity; it is not an incident notice. The company link therefore opens that archive instead of the unavailable storefront.\u003C\u002Fp>\n\n\u003Cp>Because passwords are a verified class, anyone who knows they used a password at the service should replace it anywhere it was reused and use a unique password. The combination of address, phone, and email data can make delivery or customer-service phishing more persuasive, so unexpected payment, delivery, or reset messages should be verified through a known channel. Payment cards and bank accounts are not classes in the external record.\u003C\u002Fp>","","KomplettFritid 2021 Data Breach (139.4 Thousand Email Identifiers)","The KomplettFritid 2021 breach contains 139,401 verified unique emails and six data classes; the local index holds 139,350 email associations.","\u002Fuploads\u002Flogo\u002Fkomplettfritid_no.webp",false,{"name":7,"sector":37,"country":38,"website":10,"websiteArchiveUrl":17,"websiteStatus":39,"websiteCheckedAt":40},"E-Commerce","Norway","archived","2026-07-29T22:22:32.000Z"]