Sportswear company Adidas announced a data breach yesterday afternoon that it said affected Adidas US users. The company said the breach was discovered on Tuesday, June 26, when an unauthorized user claimed to have accessed customer information.

“According to an initial investigation, the leaked data includes contact information, usernames and encrypted passwords,” a company spokesperson said, adding that there is no evidence to suggest that credit card information was compromised. Adidas said the investigation is ongoing and has been entrusted to law enforcement and security firms.
While the number of accounts leaked has not yet been reported, news sites are talking about "several million" affected accounts.
During the same day, ironically, the company saw a curious increase in its shares of 2%.
Adidas is the second major company to announce a breach this week, after Ticketmaster announced a similar incident on Wednesday, June 27. The Ticketmaster breach affected 5% of the service's users, who were mostly international users. The breach was carried out through malicious JavaScript code from a third-party company that provided a live chat widget on the Payment page.
The company appears to have been targeted by a variety of attacks, as a few months ago a very well-crafted phishing campaign against Adidas, which promised free products. Instead, users found themselves with recurring charges, and of course without the promised free products.
