// UNCLASSIFIED // CLEARED FOR PUBLIC RELEASE //
FILE BRC-hibpDTG 0600Z
ColdRecon / Breach Radar / Ralph Lauren
Breach Record

Ralph Lauren

DISCLOSED 2026-06-11 · STOLEN CREDS · 139,903 RECORDS EXPOSED

In June 2026, fashion retailer Ralph Lauren was targeted in a ShinyHunters "pay or leak" extortion campaign. The group subsequently published hundreds of gigabytes of data they claimed was obtained from the organisation's Salesforce instance, including 140k unique email addresses along with names, phone numbers, genders and age groups.

The record

What we know

Disclosed
2026-06-11
Attack vector
Stolen Creds
Records exposed
139,903
Domain
ralphlauren.com
Data classes exposed
Age groupsEmail addressesGendersNamesPhone numbers
Sources

Cited reporting

Similar vector · recent

Other stolen creds breaches on file

This page is the permanent ColdRecon entry for the Ralph Lauren disclosure. It updates if new public reporting emerges. All tracked breaches →

Ralph Lauren just lived through this. Your next prospect doesn't have to.

ColdRecon turns every disclosed breach into a daily intelligence brief from the seller's seat — normalized to the factors that move a deal, written in the Handler's voice. Request clearance and the first lands tomorrow at 0600.

Request Clearance →