Have I Been Pwned: Goose Creek Data Breach

July 15, 2026 1 Min Read 0

Threat Intelligence Brief

Curated summary with source attribution

Source: haveibeenpwned.com

Threat Risk: Medium
Victim: Goose Creek Candle Company
Incident: Data breach exposing 6.6 million customer records.
Impact: High-scale PII exposure leading to increased identity theft and phishing risks for customers.
Attacker: Unidentified threat actors
Analysis: The breach involves the exposure of personally identifiable information (PII) likely stemming from a vulnerability in the victim’s Shopify instance. The leaked dataset includes high-value targeting data such as phone numbers and physical addresses. This significantly increases the risk of targeted phishing and social engineering campaigns against the affected customer base.
Recommendations: Enable multi-factor authentication on all linked accounts; Monitor for an increase in targeted phishing and SMS scams; Update passwords for any accounts sharing credentials with the compromised store
Source: Have I Been Pwned

Editorial note: this post summarizes third-party reporting and links to the original source.
View Original Source

Leave a Reply

Your email address will not be published. Required fields are marked *