LiveBreach Intelligence: data breaches, leaks & ransomware, tracked as they surfaceOngoing protection: GalaxyWarden →
Recent BreachesData breach tracker

Recent Breaches › Hacker Claims Millions of Nike Customer Records

HIGH severityReportedHow we verify

Hacker Claims Millions of Nike Customer Records: What Was Reportedly Exposed & What To Do

RBRecent Breaches Breach Intelligence·July 9, 2026
Hacker Claims Millions of Nike Customer Records

Reported July 9, 2026. Approximately millions people affected.

HIGH
Severity
millions
People affected
3
Data types exposed
July 9, 2026
Disclosed
ShareXLinkedInFacebookRedditWhatsAppTelegram

A hacker has claimed to have stolen millions of Nike customer records on July 9, 2026, exposing customer registration data, order information, and other personal details. Customers should check whether their information was affected and take appropriate protective steps.

Severity & verification
HIGH severityReported
Data types not itemised.
Based on public reporting. Not independently confirmed by the named organization.
Check your exposure
millions accounts were exposed here. We can’t confirm any single incident against the sources we search — but we can show you every leak and listing tied to your email. 15-sec check, no card.

By running your scan you agree to the Terms and Conditions and the Privacy Policy, and to GalaxyWarden emailing you the results of this scan.

A claim posted on July 9, 2026, asserts that millions of Nike customer records have been taken and offered for sale. The post includes a sample dataset described as roughly 40 GB in size and containing customer registration data, order information, and other personal details. The exact number of records and whether the data originated directly from Nike systems remain unconfirmed. The incident matters because customer records held by large retailers routinely include information that can be used for fraud or identity misuse. Even when the scale and authenticity of a posted sample are uncertain, the possibility that personal data has left company control creates practical risks for the individuals named in those records.

What happened

On July 9, 2026, a new user on an online forum stated that millions of Nike customer records had been removed and were available for purchase. The claim described an estimated eight-figure quantity of records and included a sample file said to hold customer registration data, order information, and other personal identifiers. Review of the sample noted that the JSON format contained duplicates and log entries, which has left open the question of whether the material came directly from Nike or from a third-party partner. Nike had experienced a separate corporate ransomware event earlier in 2026; the forum claim appears distinct from that earlier incident.

How a breach like this happens

Incidents involving customer databases often begin with unauthorized access to internal systems or to systems operated by vendors that process orders or manage accounts. Once access is obtained, data can be copied and removed without immediate detection. In some cases the material is later offered on forums or marketplaces, sometimes accompanied by samples intended to demonstrate its contents. When samples show formatting inconsistencies or mixed log data, analysts may question whether the source was a primary company environment or an intermediary service.

Who is Nike?

Nike is a global sportswear and footwear company that maintains online and retail customer accounts, processes orders, and stores registration information for millions of individuals. Organizations of this type routinely collect names, contact details, purchase histories, and account credentials to support sales and marketing. A claim involving customer data at such a scale is consequential because the company’s records reflect routine commercial activity rather than sensitive government or health information, yet the volume of records can still affect a large number of people.

What data was at risk

The forum post named customer registration data, order information, and other personally identifiable information as present in the sample. The precise fields contained in any larger dataset have not been confirmed by Nike or by independent verification. Because the sample showed formatting issues and mixed content, it is not established whether the material represents a complete or unaltered extraction from Nike’s own systems.

The real-world impact

Individuals whose records appear in such material may face increased attempts at account takeover or fraudulent transactions if login details or purchase histories are exposed. Organizations can encounter regulatory inquiries, costs associated with notification and monitoring services, and longer-term effects on customer trust. At present the claim remains unverified by the company, so the actual distribution and use of any data cannot be quantified.

Were you affected?

People concerned about possible exposure can review account statements and enable additional login protections on any Nike-linked services. Running a free exposure scan of an email address against known breach repositories provides one way to check whether the address has appeared in previously published data sets. Official confirmation from Nike or further technical validation of the sample would be required to determine whether this specific claim involves additional records.

AICompiled with AI assistance from public sources and published under our editorial standards.

Editorial & sourcing policy
Recent Breaches is a breach-monitoring service and news aggregator. We do not exfiltrate, host, purchase, or redistribute stolen data, and we do not hold the data claimed in leak-site listings. Incidents are compiled from publicly accessible sources and threat-intelligence platforms and are reported as claims attributed to their source. We promptly correct or remove material shown to be inaccurate — write to support@galaxywarden.com or press@recentbreaches.com.
Check if you’re exposed →

How this breach connects

Company

Method

CompanyNike security record
74/100
DoxxScan™ · Moderate doxx risk
C+ 71Fair record

1 reported incident on record.

See Nike’s full breach history →

More recent breaches

Zara Data Breach (2026)April 15, 2026Oz Hair and Beauty confirms cyber incident — what it means for customersAugust 19, 2026BH Security (Brinkshome) Listed by ShinyHuntersJuly 27, 2026Helix Group Uses Vishing for SharePoint Data TheftJuly 9, 2026

Latest breaches

Read GalaxyWarden’s full analysis of the Hacker Claims Millions of Nike Customer Records →

Source: Cybernews

Based on public reporting

Breach listings — particularly those originating from ransomware or leak sites — are third-party claims that may be unverified, incomplete, or inaccurate. A listing does not by itself confirm that a breach occurred or that any specific data was exposed. Severity is an automated assessment, not a definitive rating. Verification status is shown where available.

Attributions to threat groups and methods reflect public reporting and, in some cases, unverified claims made by the groups themselves; they may be incomplete or later revised. Recent Breaches and GalaxyWarden are independent and are not affiliated with, and do not endorse, any company or group named on this page. This information is aggregated from public sources for awareness only and is not legal, security, or investment advice.

ShareXLinkedInFacebookRedditWhatsAppTelegram