Search TorNews

Find cybersecurity news, guides, and research articles

Popular searches:

Home » News » Data Breaches » Threat Actor Sell Alleged Data of 300,000 Intermarché Customers on Cybercrime Forum

Threat Actor Sell Alleged Data of 300,000 Intermarché Customers on Cybercrime Forum

By:
Last updated:August 5, 2026
Human Written
  • A threat actor claims to have stolen the personal details of about 300,000 Intermarché customers.

  • French cybersecurity researcher SaxX shared the alleged sale and urged customers to stay alert.

  • Intermarché has not announced any security incident, and no independent reports have confirmed the claim.

Threat Actor Claims Theft of 1.3 Million Intermarché Customer Records

A threat actor claims to have breached the systems of French supermarket chain Intermarché and stolen the personal information of about 300,000 customers.

According to a post shared by French cybersecurity researcher SaxX on X, the actor is now advertising the alleged database for sale on a cybercrime forum.

The available information comes from the post and the threat actor’s claims. No independent cybersecurity outlet has confirmed the alleged breach.

Threat Actor Claims Customer Data was Stolen

According to the post, the threat actor said they gained unauthorized access to Intermarché’s computer systems before copying customer records. The alleged database reportedly contains names, home addresses, and other personal details belonging to around 300,000 customers.

SaxX warned that the records appear to include very detailed address information. According to the post, the data goes as far as customers’ building numbers. The researcher advised Intermarché customers to remain careful because such details could make future scams more convincing.

The researcher also described the cybercrime forum where the data appeared. According to the post, it is like the “Amazon of cybercrime.”

The comparison refers to an underground marketplace where criminals advertise stolen databases, compromised accounts, and other illegal digital goods. However, the post did not name the forum or reveal the asking price for the alleged database.

Detailed Records Could Help Online Scammers

If the advertised records are genuine, criminals could use them in several types of fraud. Customer names and detailed addresses may help attackers create convincing phishing emails, text messages, or phone calls. Victims may believe the messages are real because they contain accurate personal details.

Criminals could also try to steal online accounts or trick people into giving away more information. Personal records often make social engineering attacks much easier because scammers can pretend to know their targets.

At the time of writing, Intermarché has not released a public statement about the alleged incident. The company has not confirmed or denied the claim on its official website. Likewise, no French data protection authority has announced an investigation related to the reported incident.

Customers Should Stay Alert While Waiting for More Information

No major cybersecurity or technology news outlet has reported evidence confirming the alleged breach. According to the information currently available, the claims come from the threat actor and the post shared by SaxX. Until further evidence appears, the authenticity of the advertised database remains unknown. 

Even so, customers with Intermarché accounts should stay alert for suspicious emails, text messages, or phone calls asking for personal details or login information. Users should always confirm unexpected messages through Intermarché’s official channels instead of replying directly.

Similar warnings have been issued following unverified claims of a Federal Bank data breach, where threat actors allegedly exposed highly sensitive identifiers like PAN numbers and Aadhaar details, underscoring the need for vigilance across banking and retail sectors

Customers should also use strong and unique passwords for their online accounts, turn on multi-factor authentication where available, and watch their financial and online accounts for unusual activity.

If Intermarché later confirms a security incident, affected customers may receive official guidance about password changes, identity protection, or other recommended steps. Until then, the reported sale of 300,000 customer records should be treated as an unconfirmed claim based on the information shared in the X post.

Share this article

About the Author

Joahn G

Joahn G

Cyber Threat Journalist

Joahn is a cyber threat journalist dedicated to tracking the evolving landscape of digital risks. His reporting focuses on ransomware gangs, data breach incidents, and state-sponsored cyber operations. By analyzing threat actor motives and tactics, he provides timely intelligence that helps readers understand and anticipate the security challenges of tomorrow.

View all posts by Joahn G >
Comments (0)

No comments.