A threat actor, identified as @grep, has claimed responsibility for a data breach involving the Italian delivery service Yummy. The breach allegedly took place in August 2024 and reportedly exposed sensitive customer data.
This includes user IDs, names, email addresses, password hashes, phone numbers, and delivery addresses. The actor has shared samples of the compromised data, suggesting that both user information and delivery details have been affected.