Smartphone manufacturer OnePlus today revealed a security breach in its online store.
The breach likely occurred last week but was discovered immediately, according to an FAQ page published earlier today.
OnePlus says hackers gained access to past customer orders that included names, contacts, emails and shipping addresses. The company says no passwords or financial information was leaked.
OnePlus believes the hackers' entry point was a vulnerability in its website, but did not provide further details.
"We have inspected our website in detail to ensure that there are no similar security flaws," the company said.
“Before making the leak public, we notified our online partners via email. We are currently working with the relevant authorities to further investigate the incident,” a member of OnePlus’ security team said in a forum post, separate from the company’s FAQ post.
This is the second security breach in the company's short history. A similar situation was seen in January 2018, when attackers managed to gain access to the data of 40,000 users.
What do I do now?
If you are a customer of the company, you should be careful in the coming period. You should immediately change your password on the OnePlus portal (despite the company's claims that no passwords were leaked) and pay attention to every email you receive.
Avoid clicking on links contained in emails and do not open attachments unless you are expecting them.
