logo

Durex India spilled customers’ private order data

ID: 5e61191c-3b93-5ac2-a68e-06d15d10747e

STIX ID: report--5e61191c-3b93-5ac2-a68e-06d15d10747e

Feed Name: TechCrunch Security News

Threat Score
45/100

Date Published: 2024-08-29

Date Updated: 2026-04-23

Author: Jagmeet Singh

...
...

A security researcher discovered that Durex India's website exposed customer PII — including full names, phone numbers, emails, shipping addresses, order details, and amounts paid — via an unauthenticated order confirmation page. TechCrunch verified the findings, the researcher notified CERT-In, and the parent company declined to comment; the exact number affected is unknown though evidence suggests hundreds, raising risks of identity theft and harassment.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.