Home › Intelligence › Brief
BREACH BRIEF🟠 High Breach

Dodo Pizza Confirms Data Breach Potentially Impacting 68 Million Customers

Dodo Pizza disclosed that the DataSuckers hacking group accessed a database containing personal details and order history for millions of customers. The breach highlights the need for robust access‑control and vulnerability‑management evidence to satisfy audit and regulator expectations.

LiveThreat™ Intelligence · 📅 September 29, 2026· 📰 therecord.media
🟠
Severity
High
BR
Type
Breach
🎯
Confidence
High
🏢
Affected
1 sector(s)
✅
Actions
4 recommended
📰
Source
therecord.media

Dodo Pizza Confirms Data Breach Potentially Impacting 68 Million Customers

What Happened — Hackers identifying themselves as the “DataSuckers” group breached Dodo Pizza’s internal systems and accessed a database containing customers’ names, addresses, email addresses, phone numbers, dates of birth and order history. The company blocked the attackers, began an internal investigation and notified Russia’s regulator Roskomnadzor.

Why It Matters for Trust & Control Assurance

  • The incident illustrates the risk of insufficient access‑control and vulnerability‑management processes – a core control objective that continuous assurance programs are built to monitor and evidence.
  • Demonstrable, up‑to‑date evidence of privileged‑access reviews, patch management and incident‑response readiness can reduce audit‑finding exposure across frameworks (e.g., NIST CSF, ISO 27001).
  • Leveraging a control‑mapping platform that aggregates logs and remediation tickets provides the defensible audit trail regulators expect after a breach.

Who Is Affected – Global quick‑service restaurant operators, their franchisees, and the millions of consumers who have ordered from Dodo Pizza in 28 countries.

Recommended Actions

  • Conduct an immediate access‑control review: verify that only authorized accounts have privileged rights to customer databases.
  • Validate that all known software components are patched; prioritize remediation of any “minor vulnerability” that could enable lateral movement.
  • Capture and retain logs of privileged‑access activity to support a forensic timeline and future audit evidence.
  • Update incident‑response playbooks with lessons learned and test them through tabletop exercises.

Source: The Record – Dodo Pizza breach

Technical Notes

  • Attack vector appears to be exploitation of a previously unknown vulnerability (the group referenced a “seemingly minor vulnerability”).
  • Compromised data: personal identifiers and order history; payment data was not stored.
  • No public evidence of data exfiltration, but the group claims possession of 68 M records and is offering the dataset for sale.

Source: The Record – Dodo Pizza breach

📰 Original Source
https://therecord.media/russian-pizza-chain-dodo-confirms-data-breach ↗

This LiveThreat Intelligence Brief is an independent analysis. Read the original reporting at the link above.

From the Verisq platform · Trust Operations

Could you prove your access controls held up here?

Credential and access failures map directly to identity and access-control requirements in every major framework. The Verisq AI Trust Operations platform shows where your evidence is thin before an auditor — or an attacker — finds out.

Explore the Verisq AI Trust Operations platform →