This page documents a data breach listing tracked by Breach House. It summarizes the
publicly advertised leak attributed to Database World ROC,
including the affected entity, origin and the date the listing was first indexed.
Breach Overview
Neiman Marcus Database In May 2024, the Neiman Marcus Group, Inc. - American integrated luxury retailer was breached by ShinyHunters and after the company's refusal to "pay the small fee for deletion", the data was published on BreachForums.The leak contained data on more than 40 million customers and included over 29.7 million unique email addresses, account balances, browser user agent details, credit cards, dates of birth, gift cards, IP addresses, names, payment histories, payment methods, phone numbers, physical addresses.ShinyHunters themselves explained the leak like this - "Neiman Marcus didn't pay the small fee for deletion, hiding behind legal terms they invented; so we decided Neiman Marcus can pay $200 million in fines instead, we are giving for free the hottest base (of the hour) . Compromised data:Account balances, Browser user agent details, Credit cards, Dates of birth, Email addresses, Gift cards, IP addresses, Names, Payment histories, Payment methods, Phone numbers, Physical addresses.
Dark Web Exposure
Cross-referenced against HaveIBeenRansom's dark-web index of ransomware leaks, breaches & infostealer logs.
0
found in Infostealer logs
0
found in Traditional breaches
0
found in Ransomware leaks
••••••••••••••••••••••••
•••••••••• · ••••••
••• emails
••••••••••••••••••••••••
•••••••••• · ••••••
••• emails
••••••••••••••••••••••••
•••••••••• · ••••••
••• emails
••••••••••••••••••••••••
•••••••••• · ••••••
••• emails
Full exposure is locked
See every breached email, the internal-vs-external split and each leak source behind this breach.
Legal Disclaimer:
This breach record is compiled from publicly advertised leak listings.
Breach.house only records what the operators themselves publish in the
open. We take screenshots of their public pages and keep the proof
material they post there, so that a listing can be verified and its status
tracked over time. We do not purchase data, we do not solicit or encourage
its publication, we do not access any private system, and we do not alter
anything we record. Nothing is offered for download here, and detailed
content is not published on this page or anywhere else on the public site:
access to it is restricted to vetted customers under contract, for
incident response, due diligence and cyber-resilience work.
Breach.house is not affiliated with, and does not act on behalf of, the
operators who publish this material. If you represent an organisation or
individual named here and want a record reviewed or removed, contact us
and we will act on it.