NEBBIA Allegedly Breached as 32K Customer Records Are Released

A threat actor claims to have leaked more than 32,000 NEBBIA customer documents while alleging hundreds of thousands of additional records remain unpublished.
Redacted screenshot of a cybercrime forum post claiming a data breach involving fitness apparel brand NEBBIA. The post alleges tens of thousands of customer documents were exposed and includes a company overview, claimed data categories, and a partially redacted section describing the alleged incident.
A threat actor claims to have breached fitness apparel brand NEBBIA and published the first tranche of an alleged customer data leak. BreachNews redacted portions of the original post that were unrelated to the reported claims, contained inflammatory language, or identified private individuals, while preserving the technical and evidentiary context relevant to the story.

Updated July 22, 2026: NEBBIA has confirmed to BreachNews that it identified a security incident affecting certain customer order-related documents. The company said it acted immediately to contain the incident, secure the affected systems, and close the issue that led to the exposure.

NEBBIA said the affected documents contained information including customer names, delivery addresses, contact details, and order contents. The company said payment card details and customer account login credentials were not included because those details were not stored in the affected systems.

The company has notified the Office for Personal Data Protection of the Slovak Republic and law enforcement and said it is cooperating with the ongoing investigation. NEBBIA has not confirmed the figures published by the threat actor and said it is still working to determine the precise scope of the incident.

NEBBIA advised customers to remain alert to unsolicited messages that reference their orders and to avoid responding to requests for personal or payment information.


A threat actor has claimed responsibility for an alleged breach involving Slovak fitness apparel brand NEBBIA, publishing what they describe as the first batch of customer documents while threatening to release hundreds of thousands more.

Unlike many recent breach claims centered on databases or source code, the alleged incident involves customer invoices, shipping records, and order documents that could expose detailed purchasing histories if authentic. According to the forum post, 32,340 customer documents have already been released, with another 285,662 allegedly scheduled for publication.

Order documents allegedly exposed

Headquartered in Žilina, Slovakia, NEBBIA is an international fitness apparel brand that sells premium activewear through its online store and retail partners across Europe and other markets.

The threat actor claims the exposed material includes customer order documentation generated during the purchasing and fulfillment process. According to the listing, the alleged leak contains:

  • Customer names
  • Billing addresses
  • Email addresses
  • Phone numbers
  • Order dates
  • Purchased products and quantities
  • Order totals
  • Payment method information
  • Shipping labels
  • Packing slips
  • Invoices

If authentic, the exposed records could provide attackers with detailed purchase histories alongside personally identifiable information, making affected customers more susceptible to phishing, identity fraud, and social engineering attacks.

Sample files appear to contain recent orders

BreachNews reviewed sample PDF documents included with the forum listing. One appears to be a courier shipping label containing a recipient’s full name, delivery address, telephone number, shipment details, and sender information. The second appears to be a customer invoice listing purchaser details, billing and shipping addresses, email address, telephone number, purchased products, payment method, tax calculations, and the total order value.

The sample documents also appear to relate to orders processed between late June and early July 2026, suggesting the alleged records, if authentic, may be relatively recent rather than historical archives.

While the sample files appear consistent with genuine order fulfillment documents, BreachNews has not independently verified that the alleged dataset originated from NEBBIA or that the claimed number of affected records is accurate.

Threat actor claims more documents remain

The forum listing advertises the current release as only the first stage of the alleged breach. According to the threat actor, more than 285,000 additional customer documents remain unpublished and may be released at a later date.

The post includes several screenshots presented as evidence and offers a downloadable archive through the forum. BreachNews is not reproducing or linking to the alleged leaked material.

Pattern of recent breach claims

The alleged NEBBIA breach is the latest in a series of customer data leaks attributed to the same threat actor. In recent weeks, BreachNews has also reported on the alleged breach of AL’s Sporting Goods, the alleged leak of 688,193 George Brown Sports Clubs member records, and an alleged patient data breach affecting a Houston orthopedic practice.

Picture of m00s3c

m00s3c

Moose (@m00s3c) is the author of BreachNews, focusing on data breach intelligence, dark web monitoring, and threat analysis. His work involves analyzing breach claims, reviewing leaked datasets, and tracking threat actor activity to provide clear, factual reporting.

Latest News

BREACHNEWS.COM/SUPPORT/

Support Independent News.

Help support breach monitoring, investigations, infrastructure, and reporting.

Support the site