ConfirmedData breach

Baydöner: a data breach

In March 2026, the Turkish restaurant chain Baydöner suffered a data breach which was subsequently published to a public hacking forum . The incident exposed over 1.2M unique email addresses along with names, phone numbers, cities of residence and plaintext passwords. A small number of records also included Turkish national ID number and date of birth. In their disclosure notice , Baydöner stated that payment and financial data was not affected.

The record

Organisation
Baydöner
Identity
Baydöneridentified by its domain in a verified breach record
Records affected
1,266,822 records
Data exposed
Dates of birth, Email addresses, Genders, Geographic locations, Government issued IDs, Names, Passwords, Phone numbers, Purchases
Sector
Not recorded
Occurred
2026-03-08
Disclosed
2026-03-15
First recorded here
2026-09-09

Sources (1)

One source so far.

  1. Have I Been PwnedFirst reported

    2026-03-15