Mytheresa data breach
The Mytheresa breach happened on April 12, 2026 and exposed 84,108 accounts. 7 kinds of data were exposed.
Overview
- Site
- mytheresa.com
- Breach date
- April 12, 2026
- Recorded on
- May 27, 2026
- Accounts exposed
- 84,108
- Exposed data
- Email addresses, Names, Partial credit card data, Phone numbers, Physical addresses, Purchases, Salutations
- Risk score
- 60 out of 100
Risk based on the exposed data
This breach scores 60 out of 100. The score is driven mostly by Partial credit card data, Phone numbers, Physical addresses.
The risk score is a guide to how dangerous a breach is, judged by the kinds of data exposed. The number of accounts is not included.
Breaches from the same period
- Marcus & Millichap (2026-04-12, 1,837,078 accounts)
- McGraw Hill (2026-04-10, 13,500,136 accounts)
- Abrigo (2026-04-14, 711,099 accounts)
What affected users should do
- Passwords were not exposed, but you may receive fake emails aimed at the exposed email addresses.
- Turn on two-factor authentication for your login.
- Phone numbers were exposed, so watch out for impersonation by text message or phone call.
- Card or bank details were exposed, so check your statements and contact your card issuer or bank about any charges you do not recognize.
This site organizes publicly available information about data breaches. Data as of May 27, 2026. Breach dates are as originally listed; when only the month is known, the date is recorded as the 1st.