Replace: Added provider assertion on the finish of the article.
UK telecommunications firm TalkTalk is investigating a third-party provider knowledge breach after a risk actor started promoting alleged buyer knowledge on a hacking discussion board.
“As a part of our common safety monitoring, given our ongoing concentrate on defending prospects’ private knowledge, we had been made conscious of surprising entry to, and misuse of, certainly one of our third-party provider’s methods, nonetheless, no billing or monetary info was saved on this method,” TalkTalk instructed BleepingComputer.
“Our Safety Incident Response staff are persevering with to work with the provider relating to this matter and protecting containment steps had been taken instantly.”
“Our investigations are ongoing, nonetheless we are able to verify that the variety of potential prospects referred to in sure on-line posts is wholly inaccurate and really considerably overstated.”
This assertion comes after somebody named “b0nd” started promoting what they declare is TalkTalk buyer knowledge on a hacking discussion board that was allegedly stolen in a January 2025 knowledge breach.
“Because the title says immediately we’ll listing on the market a big knowledge breach involving TalkTalk. This breach occurred January 2025 and impacts 18,839,551 present and former prospects.” reads the submit to a hacking discussion board.

Supply: BleepingComputer
The risk actor additionally shared a pattern of the info, which incorporates the subscriber’s title, e-mail, last-used IP tackle, enterprise telephone quantity, and residential telephone quantity.
Whereas the discussion board submit says the stolen knowledge comprises details about virtually 18.9 million present and former TalkTalk prospects, the corporate doesn’t have practically that variety of subscribers, placing the authenticity of the breach unsure.
Moreover, the screenshots shared by the risk actor point out that the info was probably stolen from the Ascendon SaaS platform somewhat than instantly from TalkTalk.
CSG Ascendon is a subscription administration platform that TalkTalk has traditionally used as a part of its operations.
In 2015, TalkTalk suffered an information breach the place hackers accessed the private particulars of over 150,000 prospects. The incident led to a £400,000 advantageous by the UK Info Commissioner’s Workplace.
Replace 1/26/25:Â CSG confirmed that the info originated from their platform however stated that they didn’t endure a breach of their methods and it solely impacted one buyer.
“On Jan. 21, 2025, CSG discovered that an exterior social gathering gained unauthorized entry to a single supplier’s knowledge residing on a CSG platform,” CSG instructed BleepingComputer.
“We’ve no proof that CSG’s applied sciences and methods had been compromised or that CSG was the reason for the surprising entry to the info. CSG supplied instant containment and is actively supporting our buyer.”
BleepingComputer requested whether or not the risk actor breached TalkTalk’s account by compromised credentials however has not heard again right now.