Article Details

Scrape Timestamp (UTC): 2026-01-26 12:26:43.182

Source: https://www.theregister.com/2026/01/26/data_thieves_claim_nike_data_haul/

Original Article Text

Click to Toggle View

Data thieves borrow Nike's 'Just Do It' mantra, claim they ran off with 1.4TB. US sports brand launches probe after extortion crew WorldLeaks claims it stole huge dataset. Nike says it is probing a possible breach after extortion crew WorldLeaks claimed to have lifted 1.4TB of internal data from the sportswear giant and posted samples on its leak site. In a listing seen by The Register, WorldLeaks alleges it has stolen 188,347 files from Nike's systems. The group has published the data with filenames pointing toward design and manufacturing workflows, rather than customer databases. Examples include directories labeled "Women's Sportswear," "Men's Sportswear," "Training Resource – Factory," and "Garment Making Process," suggesting the alleged haul centers on product development and production processes. Nike confirmed it's looking into the matter but stopped short of validating the criminals' claims. "We always take consumer privacy and data security very seriously," a spokesperson told The Register. "We are investigating a potential cybersecurity incident and are actively assessing the situation."  When asked, the company declined to say what data was stolen and whether it planned to pay a ransom demand. There's nothing so far to suggest customer or employee records were involved, which keeps regulators at arm's length for now. That said, design files, factory training notes, and process documentation are the sort of internal plumbing companies don't expect to lose control of, even if they don't trigger formal breach notices. It doesn't take much imagination to see how copycats or grey-market factories might make use of it. Crews like WorldLeaks aren't bothering with ransomware theatrics anymore and are going straight for whatever files they can grab. The crew is said to be a rebrand of Hunters International, a ransomware gang that's been around since 2023. These days they don't bother encrypting anything; they just take the data and start leaning on victims with the threat of leaks. With police pressure up and fewer companies paying for decryptors, that's where the leverage is now. WorldLeaks claims hundreds of victims so far, with manufacturers and industrial firms cropping up again and again. Dell made the crew's hitlist in July last year, but claimed WorldLeaks didn't make off with any important data.  The Nike claim lands just weeks after another US sportswear heavyweight was forced into cleanup mode. Under Armour disclosed a breach following an attack by the Everest ransomware gang. According to Have I Been Pwned, the extortion crew exposed the details of 72.7 million Under Armour accounts, including names, email addresses, dates of birth, genders, geographic locations, and purchase information. As with most extortion claims, the true size and value of the haul is hard to judge without Nike putting more on the record. What does seem clear is that fashion and sportswear firms, with messy global supply chains and a steady stream of new designs moving between partners, have become a target for data thieves who don't need customer databases to cause real damage.

Daily Brief Summary

DATA BREACH // Nike Investigates Potential 1.4TB Data Breach by WorldLeaks Group

Nike is investigating claims by WorldLeaks that 1.4TB of internal data, including design and manufacturing files, was stolen and partially published online.

The breach reportedly involves 188,347 files, focusing on product development and production processes rather than customer or employee data.

Nike has not confirmed the breach details or whether a ransom demand was made, maintaining that consumer privacy and data security are top priorities.

WorldLeaks, formerly known as Hunters International, has shifted tactics from ransomware to direct data theft and extortion, targeting industrial firms.

The incident follows a similar breach at Under Armour, highlighting the vulnerability of sportswear companies with complex supply chains.

This trend suggests a growing threat to fashion and sportswear firms, where internal data theft can lead to significant operational and competitive risks.

Companies are advised to strengthen their cybersecurity measures, focusing on safeguarding internal processes and design documentation.