Company · Jewelry design and retail · Fashion accessories brand · Global
Spanish jewelry and accessories retailer.
The Breach Risk Index (BRI) is a proprietary 0–100 score rating how dangerous a breach is right now, based on how recently the data has been circulating on the dark web and how valuable it is to attackers.
The WorldLeaks data-extortion group listed Spanish jewelry and accessories brand UNOde50 as a victim on November 14, 2025. Publicly available details are limited and UNOde50 has not issued a detailed confirmation. A DataBreach.com record associated with the incident cited roughly 1.58 million records with email addresses and phone numbers. NOTE: the prior record tagged Social Security numbers as exposed, which is implausible for a Spain-based consumer jewelry brand and unsupported by any source; SSN has been removed as a likely mislabeled field pending verification. No independent confirmation of the exposed data types or count is available.
Full threat analysis, exploitation vectors, and principal guidance below.
11 additional sections · verified field analysis · defensive doctrine
1.6M records analyzed
UNOde50 is a Spanish jewelry and accessories brand founded in the late 1990s, known for handcrafted, limited-run designs sold through its own boutiques and e-commerce channels internationally. It maintains customer accounts, contact details, order and shipping histories, and loyalty/marketing profiles across retail and direct-to-consumer operations.
Jewelry and accessories brands collect customer identity, contact details, addresses, order history, loyalty records, and payment-adjacent data across direct-to-consumer and retail operations.
The WorldLeaks extortion group listed UNOde50 as a victim on November 14, 2025. As of the latest reporting, details of the exposed data were limited, UNOde50 had not issued a detailed public confirmation, and there was no independent verification of the specific data types or volume.
For a consumer jewelry brand, the confirmed exposure of customer contact data (emails and phone numbers) primarily enables phishing, smishing, order- and delivery-impersonation scams, and profiling of purchase behavior. Because the brand is luxury-adjacent, exposed customers may be targeted as higher-value households. The breach also carries reputational and GDPR regulatory exposure given the company’s Spanish/EU base.
• Targeted phishing and smishing using exposed emails and phone numbers | • Order, delivery, and refund-impersonation scams referencing the brand | • Credential stuffing/account takeover against reused customer passwords | • Profiling/targeting of higher-value households based on luxury purchase behavior
A consumer-service breach: contact and account data supports phishing, account takeover and profile enrichment. For a high-profile principal the main risk is credible impersonation and enrichment of existing exposure.
Motivation: Financial extortion
A leak extortion operation described as a rebrand or successor evolution of Hunters International. Reporting describes a shift toward extortion-only operations rather than encryption-first ransomware, with affiliate infrastructure and data leak pressure.
Enter your email to check whether your data appears in this breach. We’ll send a 6-digit code to confirm it’s your address.
Be the first to know when new breaches are disclosed. Free forever — confirm your email with a 6-digit code.
Executives, public figures, and high-visibility operators can receive tailored exposure intelligence and hardening guidance.
Request Consultation