MediumBreachHave I Been Pwned — public breach catalog· 28 Feb 2024

Tangerine — 243K accounts

Severity: Medium · Kind: Data breach

Plain-English summary on the way

We've ingested this item but haven't summarised it yet. Read the upstream advisory using the link below in the meantime — the AI summary will appear here once the next run completes.

From the source

In February 2024, the Australian Telco Tangerine suffered a data breach that exposed over 200k customer records . Attributed to a legacy customer database, the data included physical and email addresses, names, phone numbers and dates of birth. Whilst the Tangerine login process involves sending a one-time password after entering an email address and phone number, it previously used a traditional password which was also exposed as a bcrypt hash.

Breach facts

Accounts affected
243,462
Verified
Yes
Sensitive
No
Domain
tangerinetelecom.com.au
Data exposed
Dates of birthEmail addressesNamesPasswordsPhone numbersPhysical addressesSalutations

Was this useful?

00000Sign in to react

Plain-English summaries are AI-generated and reviewed for tone, not technical accuracy. For incident response, always rely on the original source linked above.