Did ASOS US Sales LLC have a data breach?
Answer
Yes. ASOS US Sales LLC reported a data breach to the Oregon Attorney General on September 9, 2026.
View the official filingWhat the filing says
- Reported to
- Oregon Attorney General
- Filing date
- September 9, 2026
- Breach date
- July 28, 2026
- People affected
- Not stated in the filing
Information involved
- Full Name
- Email Address
- Mailing Address
- Password or Credential Hash
- Purchase and Order History
- Payment Card Information
- Phone Number
- Customer Account Preferences
In plain terms
ASOS US Sales LLC filed a data breach report with Oregon authorities on September 9, 2026, regarding an incident on July 28, 2026. The exposed data includes Full Name, Email Address, Mailing Address, Password or Credential Hash, Purchase and Order History, Payment Card Information, Phone Number, and Customer Account Preferences. Individuals affected by this breach should monitor for suspicious activity, as these details could be used for identity-related fraud or unauthorized account access.
ASOS US Sales LLC, an online apparel and lifestyle retailer, reported a data security incident to Oregon regulators on September 9, 2026. The company stated the incident occurred on July 28, 2026. Public filings indicate that the nature of the breach is currently unspecified, and the investigation status is listed as monitoring.
According to the official report, the data categories involved in this breach include Full Name, Email Address, Mailing Address, Password or Credential Hash, Purchase and Order History, Payment Card Information, Phone Number, and Customer Account Preferences. This information is typically used for managing customer accounts and processing online purchases through the platform.
Exposure of such personal information can create risks for affected individuals. Compromised email addresses and full names might be used in targeted phishing attempts. If credential hashes are exposed, unauthorized parties could attempt to gain access to online accounts, not just with ASOS but potentially on other websites where users reuse passwords.
Individuals who receive notification regarding this breach should consider updating their passwords for ASOS and any other online accounts where the same password was used. It is also recommended to enable multi-factor authentication (MFA) on all available online services. Regularly reviewing statements from financial institutions and credit reports for any unauthorized activity is an important protective measure.
Other filings by ASOS US Sales LLC
Companies often file the same breach in several states. Each filing is listed separately.
Commonly recommended next steps
Watch your financial accounts
Review bank and card statements for unfamiliar activity and turn on transaction alerts. Report anything you don't recognize to your bank right away.
Secure your online accounts
Change the password on any account that reused an exposed password and turn on two-factor authentication wherever it's offered.
Stay alert to targeted scams
Be cautious of calls, texts, or emails that reference this breach. Legitimate organizations won't ask you to confirm sensitive details through an unsolicited message.
Keep your notification letter
Save the notice you received. It documents that your information was involved and is often needed to enroll in any credit monitoring offered or to join a related legal claim.
Look up another company
Other breaches reported in Oregon
- Poppins Payroll CompanyYes — reportedOregon · September 30, 2026
- Midvale Indemnity CompanyYes — reportedOregon · September 30, 2026
- Lamb Weston Holdings, Inc.Yes — reportedOregon · September 29, 2026
- Upbound Group, Inc.Yes — reportedOregon · September 28, 2026
- OneMain FinancialYes — reportedOregon · September 28, 2026
- MedImpact Healthcare Systems, Inc.Yes — reportedOregon · September 26, 2026
- Call-On-Doc, Inc.Yes — reportedOregon · September 24, 2026
- Ridgeway Pharmacy LtdYes — reportedOregon · September 21, 2026
- IDScan.netYes — reportedOregon · September 18, 2026
- Kaniksu Community HealthYes — reportedOregon · September 15, 2026
DataBreachSearch.com reports what was filed with state regulators. It is not legal advice, is not a law firm, and is not affiliated with any government agency or with ASOS US Sales LLC.