Lush
bd_f9d88d7efe303555 · schema v1 · pii pii-v1
Full breach record for Lush →Threat-actor claim — not a regulatory filing
This row is a claim by the ransomware group Akira on its public extortion blog. It has not been validated by the victim or any regulator. Treat attribution and counts as the threat actor's assertion until a regulatory filing or victim disclosure corroborates them.
Source: Ransomware.live
Post text · scraped from the leak site
Founded in 1995 and headquartered in Poole, United Kingdom, Lush is a cosmetic store specializing in the retail of bath bombs, hair products, makeup and more. 110 Gb of their files are prepared for uploading. There are a lot of personal documents especially passports. Accounting, finance, tax, projects, clients information and much more could be found in the archives we are going to share.
Source provenance
- Source URL
- https://www.ransomware.live/id/THVzaEBha2lyYQ==
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jan 25, 2024
- Raw hash
- a8c3ca05c6b490de20ae6a0f0e0967fe99721ff02c44c968c27740741e34ed3a
Reporting entity
- Name
- akira
Victim entity
- Name
- Lushnorm: lush
- Domain
- lush.com
- Industry
- Professional Services
What this source establishes
- Source ceiling
- A leak-site claim can't tell us: discovery date · materiality · notification · affected count · confirmed data types · compliance clock. These stay blank until a regulatory filing or victim disclosure lands.
- Attack vector
- Ransomware· akira
- Threat actor
- AkiraExternalFinancial
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.