French retailers andchan are informing that some sensitive data related to the loyalty accounts of several hundred thousand customers were exposed in the cyber attack.
The company is sending data bare information to customers affected by the incident.
The retailer’s notification states, “We are writing to inform you that Auchan has been a victim of a cyber attack. This attack led to unauthorized access to some personal data related to your loyalty account.”
According to the sample of the notice, the data exposed in the attack includes full name, title and customer status, postal address, email address, phone number and loyal card number.
The retailer underlines that bank data, passwords and PIN numbers have not been affected.

Source: Jataz
In a statement for French mediaA representative of the company said that its customers’ data related to “several hundred thousand” were consistent with the incident.
Auchan is a French multinational retail group operating more than 2,100 branches in 13 countries in Europe and Africa. The series employs 154,000 people and its annual revenue is more than $ 35 billion.
The company said that it has informed the French Data Protection Authority (CNIL) about data violations.
Meanwhile, the tortoise letters recommend recipients to be vigilant for potential fishing attacks availing the information of theft.
“We remind you that Achan will never ask for your login details, password, or loyalty card PIN code (whether email, SMS, or by phone),” Auchan warned.
“If you receive such a message, do not click on any link, do not call the indicated number, and ignore the information present in it, as it is most likely for a fishing attempt.”
Bleepingcomputer contacted Auchan several days ago to request more information about the attack, but the company has not responded.
Data violations in AUCHAN falls after the same revelations made by other large institutions in France, including Air France and KLM, Orange, and Bouygues Telecommunications, some of which were associated with the attacks of Shinhetors on Salesforce.
At this time, there is no evidence to add these attacks or suggest a coordinated campaign that targets big businesses in the country.