ManoMano data breach: massive DIY chain incident affects 38 million customers – here’s what we know


  • ManoMano lost sensitive data of 37.8 million customers via third-party Zendesk breach
  • Exposed information includes names, emails, phone numbers and support communications
  • The company disabled subcontractor access, notified authorities and warned users about phishing risks

Popular DIY, home improvement and gardening e-commerce site ManoMano has suffered a third-party cyber attack that saw it lose sensitive data on nearly 38 million customers.

In January 2026, a threat actor alias “Indra” allegedly broke into a customer service provider in Tunis through a Zendesk account. From there, they went on to exfiltrate sensitive customer data, including people’s full names, email addresses, phone numbers and customer service communications.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top