Shein
ent_e1e7c73872fd725f6e0d5f78
Disclosures
7
Leak Site · State AG · 7 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
6,420,000
as filed · State AG WA
Leak-site claims
1
unverified actor claims
Identity resolution
- Canonical name
- Shein
- Normalized
- shein— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- shein.com
Disclosure history (7)newest first
- GLOBALLeak Siteas victim2024-03-01
Revenue: +$30B We successfully fucked shein's servers Category: child labour Data compromised:customers,shipment, employees information Size: 300GB Data is also for sale! Deadline: 3.10.24 If you are an employee of the company or someone who would like to buy the data, click on me
- Washington State AGas victim2018-10-11
SHEIN notified customers of a cyberattack where intruders stole email addresses and encrypted passwords from approximately 6.42 million customers. The breach occurred between June and August 2018. SHEIN engaged forensic investigators, removed malware, closed backdoors, and offered one year of identity theft monitoring.
- Oregon State AGas victim2018-10-11
Shein reported a data breach to the Oregon Attorney General. The breach was reported on 2018-10-11. The breach occurred during 6/1/2018 - 6/1/2018. The breach was discovered on 8/8/2018. 6,420,000 individuals were affected. Notice was sent on 9/21/2018.
- Massachusetts State AGas victim2018-10-10
SHEIN reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2018-10-10. 10,000 Massachusetts residents were affected. The report records the breach type as paper.
- California State AGas victim2018-10-10
Shein disclosed a cyberattack where customer email addresses and encrypted password credentials were stolen. The breach occurred between June 1, 2018, and early August 2018, with discovery on August 22, 2018. Approximately 6.42 million customers were affected. Shein engaged forensic investigators, removed malware and backdoors, and offered identity theft monitoring.
- Montana State AGas victim2018-09-21
SHEIN notified Montana customers of a cyberattack on August 22, 2018, where intruders stole email addresses and encrypted passwords. SHEIN engaged forensic and legal firms, removed malware, and closed attacker entry points. Affected customers were offered LifeLock monitoring services.
- New Hampshire State AGas victim2018-09-21
SHEIN notified customers of a data breach affecting approximately 6.42 million individuals. The breach, occurring between June and August 2018, resulted in the theft of email addresses and encrypted passwords. SHEIN engaged forensic investigators, removed malware, closed backdoors, and offered one year of identity theft monitoring.