Minted, the online marketplace that allows independent artists to submit their art has disclosed a data breach after hackers gained access to their user account database and sold 5 million user records on the dark web.
What Happened
Minted recently became aware of a report that mentioned Minted as one of ten companies impacted by a potential cybersecurity incident. They promptly undertook an investigation, with the assistance of outside forensic experts. The investigation determined that, on May 6, 2020, unauthorized actors obtained information from the company’s user account database. Since determining this on May 15, Minted have continued to investigate expeditiously to assess what information was impacted and identify affected individuals.
What Information was Involved
The information involved includes customers’ names and login credentials to their Minted accounts, consisting of their email address and password. The passwords were hashed and salted and not in plain text. Telephone number, billing address, shipping address(es), and, for fewer than one percent of affected customers, date of birth, also may have been impacted.
Based on Minted's investigation to date, they have no reason to believe that the following information was affected: payment or credit card information, customer address book information, or photos or personalized information that customers added to Minted designs.
What Our Minted Account Users Can Do
Affected passwords were hashed and salted and not stored in plain text. In an abundance of caution, however, we are requesting that customers promptly change their password to their Minted account.
To change your Minted password:
- Log into your Minted account page at https://www.minted.com/my-account
- Click “change password”
- Enter your current and new passwords
- Click “change password.”
If you forgot your password, you can reset it here: https://www.minted.com/forgot.
Customers should choose a strong password that is not easy to guess. They should also change their passwords for any other online accounts for which they use the same email address and password combination used for their Minted account. As always, customers should be cautious of any unsolicited communications that ask for personal information and avoid clicking on links or downloading attachments from suspicious emails.
For More Information
Minted has a team dedicated to responding to questions about the incident. Customers who have questions should please call one of their hotlines Monday through Friday from 8:00 a.m. to 8:00 p.m. US Central Time, excluding major US holidays.
- US/CAN toll-free hotline: 1-844-963-2706
- AU toll-free hotline: 1800 490 516
- UK toll-free hotline: 0800 069 8210
- UK toll hotline: +44 20 3936 1047