Dymocks Booksellers is informing its customers of a data breachafter hackers leaked the company's database to a hacking forum.

Dymocks Booksellers is a chain of bookstores with 65 stores in Australia, New Zealand and Hong Kong. It also has an online store and offers printed books, e-books, stationery, games and digital media.
The company was notified on September 6, 2023, of the leaked personal information of its customers. The notification was made by Troy Hunt, the creator of the service “Have I Been Pwned” (HIBP). A malicious actor posted the stolen data on a hacking forum.
See also: Johnson & Johnson: IBM data breach affects patients
In a statement posted on Dymocks Booksellers' website, the company explains that it has detected no evidence of intrusion into computer and is currently investigating a potential security at third-party partners.
The investigation conducted by Dymocks and security experts confirms that, so far, the following categories of customer information have been leaked:
- Full name
- Date of birth
- Email address
- Mailing address
- Genus
- Member information (account status, account, card rank)
However, Dymocks clarified that it does not store customer financial information, so no such details have been disclosed.
Have I Been Pwned confirmed that the data leaked online includes 1.2 million records for 836,120 unique Dymocks accounts.
See also: Dunghill Leak hacking group takes responsibility for Sabre data breach
All relevant authorities have been notified and Dymocks is now working to complete its investigation, while working to take additional safety measures that will help prevent similar incidents in the future.
Additionally, Dymocks Booksellers assures customers that it is safe to shop on its online store. However, it recommends changing the password on their accounts, just in case.

The stolen data has been released on various forums
According to Troy Hunt, the personal data of customers of the company Dymocks Booksellers has been leaked on various Telegram and on many hacking forums (at least since June 2023).
Therefore, many cybercriminals have access to them and can use them for phishing and other attacks.
See also: Freecycle: Data breach affects 7 million users
What should Dymocks Booksellers customers do ?
While it doesn't appear that passwords were exposed in the Dymocks Booksellers data breach, users to change If their account passwords. they use the same passwords on other accounts, then they should change them there as well.
Also, bookstore customers should be on the lookout and be careful with messages and emails requesting details or financial information.
Dymocks Booksellers is a company with a long history in the book business. Since its founding in 1879, it has acquired millions of customers worldwide. Although the recent data breach is a negative point in its history, the company has responded promptly and decisively, demonstrating the seriousness and responsibility with which it treats its customers.
Source: www.bleepingcomputer.com
