Sunrise Data Breach Investigation Launched Following Potential Customer Data Leak
An investigation is underway following reports of a potential data breach affecting over six million Sunrise customers. A database allegedly containing sensitive customer information is being offered for sale on an underground forum, raising concerns about potential phishing attacks, SIM swapping, and identity theft.
Details of the Alleged Data Breach
According to cybersecurity provider Spoofguard, a person using the pseudonym “Niphra” claims to have stolen a comprehensive customer database from Sunrise. The data package is reportedly being offered for sale for $10,000 . The alleged database includes names, addresses, phone numbers, login usernames, subscription details, and payment information. While complete credit card numbers are not reportedly included, the combination of available data poses significant risks to customers.
Potential Risks to Customers
Cybercriminals could leverage the compromised data to execute highly targeted phishing campaigns, convincingly impersonate Sunrise employees, or conduct SIM swapping attacks. SIM swapping allows attackers to take control of a victim’s mobile phone number, potentially bypassing two-factor authentication methods .
Sunrise’s Response
Sunrise states that, as of March 9, 2026, there is “currently no indication” of a data leak. The company emphasizes its comprehensive and certified security management system and asserts that customer data is secure. However, Sunrise’s cybersecurity specialists are “investigating these indications particularly carefully” and will inform customers “as soon as the facts have been clarified.”
Recent Data Breach Trends in the Telecommunications Industry
The telecommunications industry is frequently targeted by cybercriminals. Recent data breaches include incidents involving CFGI Management (373k rows), Pathstone.com (48k rows), Odido (6.6M rows), and Stockton Cardiology Medical Group (99k rows) . The Odido cyberattack, in particular, resulted in the leak of customer IBANs and government IDs .
What to Do If You Are Affected
If you are a Sunrise customer, it is advisable to remain vigilant for potential phishing attempts and to monitor your financial accounts for any unauthorized activity. Consider changing your Sunrise account password and enabling two-factor authentication where available. You can check if your email address has been compromised in known data breaches using resources like DataBreach.com.
Legal Options for Affected Customers
Edelson Lechtzin LLP is investigating potential legal remedies on behalf of Sunrise customers whose data may have been compromised. The firm is exploring the possibility of a class action lawsuit and https://www.edelson-law.com/data-breach-class-actions/sunrise-erectors-inc/.