[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f1l02i9z1d80nn":3},{"success":4,"breach":5},true,{"_id":6,"name":7,"title":8,"slug":7,"domain":9,"breachDate":10,"addedDate":11,"modifiedDate":11,"contentUpdatedAt":12,"source":13,"sourceUrl":14,"sourceUrls":15,"pwnCount":18,"affectedCount":18,"affectedCountStatus":19,"affectedCountLowerBound":20,"affectedCountUnit":21,"hasEnglishDescription":4,"severity":22,"dataClasses":23,"description":32,"seoTitle":33,"seoTitleEn":34,"seoDescription":33,"seoDescriptionEn":35,"logoUrl":36,"isVerified":4,"isSensitive":37,"isSpamList":37,"isMalware":37,"company":38},"68e3266eda11adda488252d0","neiman-marcus","Neiman Marcus 2024 Data Breach","neimanmarcus.com","2024-04-14T00:00:00.000Z","2024-07-09T19:27:32.000Z","2026-07-21T15:45:29.608Z","Verified breach record","https:\u002F\u002Fago.vermont.gov\u002Fdocument\u002F2024-06-24-neiman-marcus-group-data-breach-notice-consumers",[14,16,17],"https:\u002F\u002Fwww.bleepingcomputer.com\u002Fnews\u002Fsecurity\u002Fneiman-marcus-data-breach-31-million-email-addresses-found-exposed\u002F","https:\u002F\u002Fcloud.google.com\u002Fblog\u002Ftopics\u002Fthreat-intelligence\u002Func5537-snowflake-data-theft-extortion",31152842,"known",null,"unknown","Critical",[24,25,26,27,28,29,30,31],"Dates of birth","Email addresses","IP addresses","Names","Partial credit card data","Phone numbers","Physical addresses","Purchases","\u003Cp>The Neiman Marcus data breach was linked to 31,152,842 unique email addresses after unauthorized access during April and May 2024.\u003C\u002Fp>\n\u003Ch2>Exposed Data Types and Risks\u003C\u002Fh2>\n\u003Cp>The validated large dataset included email addresses, names, phone numbers, dates of birth, physical addresses, IP addresses, purchase information, and partial payment-card details. In combination, those fields can help an attacker make a fraudulent message look credible. A name, contact details, and shopping history can be used to imitate delivery, return, customer-service, or payment notices with a level of personal detail that generic spam does not have.\u003C\u002Fp>\n\u003Cp>Partial card information was reported, but it was not sufficient on its own to complete a purchase. It can still raise the risk of convincing messages that request account or card details. Official consumer notices also identified gift-card numbers without PINs for some individuals. That variation does not mean every person had the same fields exposed; the personal impact depends on the account history and information held at the time of the incident.\u003C\u002Fp>\n\u003Ch2>Verified Scope and Limits\u003C\u002Fh2>\n\u003Cp>Unauthorized access was reported during the period from April to May 2024, and the incident was identified in May. The figure of 31,152,842 represents unique email addresses in a validated dataset. It is not a count of order rows, payment events, or complete individual customer profiles. One person can appear in more than one transaction, while some rows may not contain an email address at all.\u003C\u002Fp>\n\u003Cp>The 64,472 people who received formal notices represent a different population and must not be treated as equal to the unique-email figure. The notices also stated that fields varied by person. For that reason, the eight data classes listed here are limited to fields confirmed in the large validated dataset; person-specific notification details are not assumed to apply to everyone. Keeping those measurements separate avoids understating or overstating the risk.\u003C\u002Fp>\n\u003Ch2>Users at Elevated Risk\u003C\u002Fh2>\n\u003Cp>People who made online purchases, shared delivery or contact details, or used gift cards may face more convincing fraud attempts. Purchase information can assist messages that imitate a product, delivery, return, or loyalty communication. When a name is paired with a phone number and physical address, an attacker can tailor a message more closely. A familiar sender name alone is therefore not enough reason to trust a request.\u003C\u002Fp>\n\u003Cp>Risk also rises for anyone who reused the same password with another service. When the email account, a payment service, or a store account lacks a distinct strong password, exposed contact details can become a starting point for new sign-in attempts. Old customer accounts deserve attention too: an account that is no longer used may still retain current contact details or payment preferences.\u003C\u002Fp>\n\u003Ch2>Immediate Protective Actions\u003C\u002Fh2>\n\u003Cp>Change passwords reused by a related store account or any other service straight away. Choose a long, unique password for every account and enable multi-factor authentication. A password manager reduces the chance of reusing a password. Review account-recovery email addresses and phone numbers as well; secure the account if an unfamiliar change appears.\u003C\u002Fp>\n\u003Cp>Review activity on card, bank, gift-card, and store accounts. Contact the relevant provider through a known channel if you find an unfamiliar transaction, delivery redirect, address change, or gift-card balance movement. Do not follow links in urgent payment or verification messages received by email, text, or phone. Personal details known to the caller or sender do not prove that the request is legitimate.\u003C\u002Fp>\n\u003Ch2>Long-Term Security Practices\u003C\u002Fh2>\n\u003Cp>A stronger long-term approach is to use a unique password and multi-factor authentication for every service, rather than relying only on periodic password changes. Protect the primary email account especially well because password-reset messages usually go there. Where possible, use an authenticator application or a physical security key, and keep recovery codes offline in a location with limited access.\u003C\u002Fp>\n\u003Cp>Remove old addresses, payment preferences, and unused gift cards from shopping accounts when they are no longer needed. Reviewing credit reports, bank activity, and account alerts at regular intervals can help identify signs of identity misuse earlier. Do not judge a message solely by its wording or sender display name; open the official website yourself or use a known support channel to verify a request.\u003C\u002Fp>\n\u003Ch2>Record Check and User Action\u003C\u002Fh2>\n\u003Cp>Check the email address in the breach search. A match means that address appears in the validated dataset; it does not by itself prove that an active store account was taken over or that a card charge occurred. Even so, a match is a useful signal to review passwords, enable multi-factor authentication, and monitor account activity.\u003C\u002Fp>\n\u003Cp>When a match appears, prioritize important accounts tied to the same email address: the primary inbox, payment services, shopping accounts, and other account-recovery points. Contact the relevant provider through its official support channel without delay if you notice an unfamiliar sign-in, address change, order, or credit inquiry. Those actions reduce current exposure and help identify later misuse promptly.\u003C\u002Fp>","","Neiman Marcus 2024 Data Breach (31.2 Million Reported Records)","Neiman Marcus 2024 Data Breach. 31.2 Million reported records were reported. Reported data: Dates of birth, Email addresses, IP addresses. Review the scope…","\u002Fuploads\u002Flogo\u002Fneimanmarcus_com.webp",false,{"name":39,"sector":40,"country":41,"website":9,"websiteArchiveUrl":33,"websiteStatus":33,"websiteCheckedAt":20},"Neiman Marcus","Retail","United States"]