Adidas has disclosed a data breach after unauthorized parties accessed customer information through one of its third-party customer service providers. The German sportswear giant confirmed that contact information was compromised, though payment details and passwords remained secure.
“We immediately took steps to contain the incident and launched a comprehensive investigation, collaborating with leading information security experts,” Adidas stated in its announcement.
The company is currently notifying potentially affected customers and has alerted relevant data protection authorities and law enforcement agencies as required by law. Adidas expressed regret for any inconvenience caused and reaffirmed its commitment to protecting customer privacy and security.
Details regarding the scope of the breach—including the identity of the affected service provider, the timing of the incident, the number of customers impacted, and whether Adidas’s own network was compromised—have not yet been disclosed.
This incident follows recent Adidas data breaches affecting customers in Turkey and South Korea who had contacted customer service in 2024 or earlier. In those cases, compromised information included names, email addresses, phone numbers, birthdates, and addresses.
The company previously experienced a significant breach in June 2018, when attackers stole contact information, usernames, and encrypted passwords belonging to “a few million” customers who had used Adidas’s U.S. website.
