Hacker claims breach of Condé Nast user database

A hacker using the name Lovely has claimed responsibility for breaching a Condé Nast user database, releasing over 2.3 million records from WIRED magazine. The data includes personal details like names, emails, addresses, and phone numbers, but no passwords. The hacker threatens to leak an additional 40 million records from other Condé Nast publications in the coming weeks.

Earlier in December 2025, the hacker Lovely announced the breach of a Condé Nast user database. They released a dataset containing more than 2.3 million user records specifically from WIRED, one of Condé Nast's prominent publications. The exposed information encompasses basic demographic details such as names, email addresses, physical addresses, and phone numbers, though crucially, it does not include passwords.

Lovely has indicated plans to disclose further data affecting up to 40 million users across various Condé Nast titles, including Vogue, The New Yorker, and Vanity Fair. However, Ars Technica, another publication under the broader umbrella but operating independently, remains unaffected due to its unique technical infrastructure.

The hacker portrayed their actions as a response to Condé Nast's alleged neglect of security vulnerabilities. In a statement, Lovely wrote: “Condé Nast does not care about the security of their users data. It took us an entire month to convince them to fix the vulnerabilities on their websites. We will leak more of their users’ data (40 + million) over the next few weeks. Enjoy!”

Questions surround the hacker's true intentions. According to DataBreaches.Net, Lovely initially posed as someone assisting with vulnerability patches but was actually seeking financial gain. The site stated: “As for “Lovely,” they played me. Condé Nast should never pay them a dime, and no one else should ever, as their word clearly cannot be trusted.”

Condé Nast has yet to release an official statement on the incident. Ars Technica reports no internal notification, which aligns with their separation from the affected systems. Security researchers, such as those at Hudson Rock’s InfoStealers, have provided detailed analyses of the leaked data's scope.

Related Articles

Dramatic illustration depicting the Coupang data breach, with data spilling from a cracked digital vault and investigators on scene.
Image generated by AI

Coupang data breach spanned June to November

Reported by AI Image generated by AI

A massive data breach at e-commerce giant Coupang exposed personal information of 33.7 million customers from June 24 to November 8. Officials revealed the attacker exploited the company's electronic signature key, prompting a thorough government investigation. The incident has heightened public concerns over South Korea's data protection capabilities.

A massive data breach has come to light, involving 149 million credentials left exposed online. The 98GB cache includes unique usernames and passwords from financial services, social media, and dating apps. The discovery highlights ongoing vulnerabilities in digital security.

Reported by AI

Hackers have accessed and stolen personal information from millions of Pornhub users, aiming to use the data for extortion schemes. The incident was highlighted in a WIRED security news roundup.

Personal information of about 4.5 million members of Seoul's public bike sharing service Ttareungyi is believed to have leaked in 2024, leading to a police investigation. The breach, suspected to be the work of hackers, is thought to have occurred around the time of widespread DDoS attacks on public institutions.

Reported by AI

A 22-year-old man from Limoges, previously convicted for similar acts, has been arrested in connection with last week's cyberattack on the Interior Ministry's servers, which compromised confidential records from the TAJ and FPR databases. Interior Minister Laurent Nuñez called the breach 'very grave' and ordered security upgrades including two-factor authentication.

Police raided the headquarters of e-commerce giant Coupang on Tuesday to seize evidence related to a massive data breach affecting 33.7 million customers. The Seoul Metropolitan Police Agency's cyber investigation team conducted the search in southern Seoul. Officials aim to determine the leak's cause, route, and perpetrator using the secured digital evidence.

Reported by AI

South Korean police have started forensic examination of a suspect's laptop, recovered by Coupang in the data breach affecting 33 million customers. The e-commerce firm claims a former employee accessed and saved data from 3,000 accounts but deleted it without external transfer—a statement dismissed by authorities as unverified.

 

 

 

This website uses cookies

We use cookies for analytics to improve our site. Read our privacy policy for more information.
Decline