Napoleon Perdis Data Breach: 339K Australian Customer Records Leaked
Napoleon Perdis cosmetics suffers data breach exposing 339K Australian customer records.
Summary
A threat actor using the alias '2019' claims to have leaked the customer database of Napoleon Perdis, an Australian luxury cosmetics brand, exposing 339,100+ customer records. The leaked data includes full names, email addresses, phone numbers, postal addresses, loyalty points, and transaction history. While unverified and unconfirmed by the company, the exposure poses significant risk for phishing, targeted scams, and social engineering attacks against high-value customers.
Full text
Data339K+ customers PriceFree leak CountryAustralia Actor2019 ▣Post details TargetNapoleon Perdis (luxury cosmetics brand) CountryAustralia SectorRetail / Cosmetics ClaimCustomer database leaked Data339,100+ customer records ObservedJun 9, 2026 PriceFree leak (reply-gated) Actor2019 (GOD user) !Allegedly exposed 339,100+ customer records (claimed) Full names (and company names) Email addresses Phone, mobile & fax numbers Postal & delivery addresses Loyalty points & dollar balances Total spend & transaction history Customer IDs & account metadata ◱Screenshot Screenshot 1 Redacted preview ⚠Potential impact If genuine, a database of 339,000+ customers with names, emails, phone numbers, and home and delivery addresses, paired with loyalty and total-spend data, would be valuable for phishing, scams, and the targeting of higher-spending customers. The spend and loyalty fields make it easier for attackers to single out the most valuable individuals. There is no indication of payment-card data or passwords in the listed fields, but the contact and address exposure alone is significant. Record counts and authenticity are unconfirmed. iStatus Unverified A column listing and sample records were posted to an underground forum, with downloads behind a reply gate; the sample records and download links are not reproduced here. The claim has not been independently confirmed and Napoleon Perdis has not publicly addressed it. Want the non-redacted screenshots? Paid subscribers get all of the claim details and unredacted screenshots. Check out the threat feed or ransomware feed (whichever applies to this post), then after subscribing, search there for this alert to view the unredacted version. View pricing → DARK WEB INFORMER - THREAT INTELLIGENCE