CSIDB logo
Incident

Lojas Torra

Incident posture

Attack window
Sep 2022
Location
Brazil
Status
Historical
CIA posture
Available to members
Updated
2025-10-17 00:00

Linked entities

Victim
Lojas Torra
Threat actors
1 actor
Sources
1 source

Timeline

Occurred
Sep 2022
Discovered
Pending
Disclosed
Pending
Resolved
Pending

Summary

A Brazilian fashion retailer experienced a data breach involving customer and employee information after being listed on Qilin's leak site. The threat actor claimed unauthorized access to sensitive data, but the affected organization did not publicly confirm the incident or the extent of the compromise.

Motives

Detailed motive labels are available to members.

1 motive

TTPs

Detailed technique labels are available to members.

1 technique

Description

Lojas Torra, a Brazilian fashion retailer, was listed on Qilin’s data leak site on October 8, 2022. The threat actor claimed to have acquired customer and employee data during a breach occurring on or around September 7, 2022. Qilin did not specify the exact volume of data exfiltrated but characterized it as sensitive corporate information. The breach was publicly disclosed through Qilin’s leak site, a common tactic to pressure victims into paying ransom demands. No further technical details regarding the intrusion method, such as malware or exploitation vectors, were provided by Qilin or independently confirmed. The retailer did not issue any public statements acknowledging the compromise or validating Qilin’s claims.

The incident exposed customer and employee data, though the specific types of personal information were not detailed in available reports. Operational impacts, such as service disruptions or financial losses, were not disclosed by Lojas Torra. Similarly, no evidence emerged confirming whether Qilin published or monetized the stolen data following their initial claim. The absence of public response from the company left the scope and severity of the breach unverified. Regulatory notifications to Brazilian authorities or affected individuals, if any occurred, were not documented in the sourced material. The incident remained unresolved in public reporting as of the latest available information.

Sources

Sources available to members: 1 source.

CSIDB