The Swedish fashion retailer said email addresses, phone numbers and order or return reference numbers among information compromised
Swedish fashion giant H&M has disclosed a data breach that exposed some of its customers’ personal information in Korea, the company said Friday.
In a notice sent to members, H&M said it had confirmed an incident involving the unauthorized access and leakage of customer information through an attack on its business systems, believed to have occurred around Aug. 5.
The company said it moved quickly to strengthen its security measures and launch an investigation after detecting the attack. Based on its findings so far, the compromised information includes customers’ email addresses, phone numbers and order or return reference numbers.
H&M emphasized that more sensitive information, including resident registration numbers, credit card details, payment information and passwords, was not affected.
The company said it also reported the incident to the relevant government authorities and is taking additional measures to prevent further unauthorized access and reduce any potential harm to customers.
The disclosure comes amid a string of recent data breaches involving companies operating in South Korea. In June, Korean streaming platform Tving said it had identified unauthorized access to users’ personal information.
In a notice posted on its website, Tving said the potentially compromised data included user IDs, names, dates of birth, gender, mobile phone numbers and email addresses. Resident registration numbers and payment-related information were not exposed, the streamer said.
H&M did not disclose how many customers were affected by the breach.







