logo

GrubHub data breach impacts customers, drivers, and merchants

ID: 759f8a61-6a65-5a2e-a996-0d9fec4313d2

STIX ID: report--759f8a61-6a65-5a2e-a996-0d9fec4313d2

Feed Name: Bleeping Computer

Threat Score
60/100

Date Published: 2025-02-04

Date Updated: 2026-03-27

Author: Sergiu Gatlan

...
...

GrubHub disclosed an intrusion originating from a third‑party service provider account that exposed contact information (names, emails, phone numbers), partial payment card details (card type and last four digits for some users) and hashed passwords from legacy systems; the company terminated the vendor’s access, rotated credentials, and retained external forensic investigators while reporting no evidence that full payment card numbers, bank account data, Social Security numbers, or driver’s license numbers were accessed.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.