Carousell has announced that it suffered a personal data security breach that affected its users in Singapore.

Photo credit: Carousell
According to an email sent to its users, the classifieds marketplace said that registered email addresses and mobile phone numbers of users had been exposed during the breach, which occurred on October 14 this year.
However, Carousell guaranteed that no credit card and payment-related information, including passwords, were accessed by bad actors.
The company said the data breach took advantage of a bug introduced by system migration efforts. “We have taken actions in connection with this issue and have fixed the bug to prevent any further unauthorized access to personal information,” Carousell wrote in a statement.
Carousell also said it has informed law enforcement officials of the breach. It’s now working with the Personal Data Commission of Singapore for an investigation into the lapse.
See Also: Org Chart: The people leading Carousell
Carousell Group recently invested US$25 million as part of a deal to acquire Indonesian electronics recommerce startup Laku6. It also recently bought Ox Street and Refash.
Editing by Arpit Nayak
(And yes, we’re serious about ethics and transparency. More information here.)
Stay updated on the go with our mobile app.
Get latest insights with smoother, more personalized experience through TIA mobile app.







